Need help QUICK
enabled ip-security on secondary dc, repadmined gpup forced, everything was like ok (user server request security - and i believe unchanged it shouldve allowed connections even if verification doesnt pass somewhy), but now i cant connect to various servers
neither users in AD can join a domain or some of them actually can but very slow, many many mistakes occured in system logs but the main is - "the kerberos subsystem encountered a pac verification failure event id 7" default server req ip policy uses kerberos,
turning it off didnt help, actually planned to change for certificate auth later on. anyway need help quick, restarted all DC's turned off the policy ... still same sh**t.
June 13th, 2012 7:03am
ive heard like remove/add users and pc into domain would help, but thats crap seriously, should i now start readding 1500 users ? my dhcp is off, so 1500 pc's too ??
Free Windows Admin Tool Kit Click here and download it now
June 13th, 2012 7:06am
on some of the virtual servers - " this computer was not able to set up a secure session with a domain controller in domain XXXXXX due to following: there are currently no logon servers available to service the logon request"
June 13th, 2012 7:08am
after restarting the dc ip monitor snap-in still shows alot of "my code" in "security comparison" when i expected it to be clear, and active policy still shows "server(request security)" when i would expect to not see anything there
Free Windows Admin Tool Kit Click here and download it now
June 13th, 2012 7:12am
trying net stop policyagent ==> not able to stop service "ipsec policy agent"
June 13th, 2012 7:17am
ok on the nodex, disabling ipsec policy agent solved the problem, but that is pure crap i swear
Free Windows Admin Tool Kit Click here and download it now
June 13th, 2012 7:47am
ok on the nodex, disabling ipsec policy agent solved the problem, but that is pure crap i swear
June 13th, 2012 7:57am