actictory error- event ID 11 mult with namecifs/pc.domain.com

K

keith

Event Type: Error
Event Source: KDC
Event Category: None
Event ID: 11
Date: 11/9/2003
Time: 7:11:40 AM
User: N/A
Computer: GC-EXCHANGE
Description:
There are multiple accounts with name cifs/GC-
servername.corp.serverdomain.com of type 10.

the error above has been occurring since a domain
controller was demoted, renamed then replaced with another
of the same original name. I read that is a bug in active
directory?
 
P

Paul McGuire

you need to demote the one in question then clean up everything in AD UC,
S&S and DNS that has anything to do with that computer name. after that is
done promote that DC back and that should fix your problem
 
B

Ben Ybarra [MSFT]

Hello Keith,

Thank you for your post.

The Event ID 11means there are two or more computer accounts that have the
same service principal names (SPNs) registered. First, I would make sure
your all domain controller and member servers are at Service Pack 4, since
we corrected alot SPN registrations issues before proceeding with
resolution.

I would suspect the machine that was rename did not remove the existing
SPNs on itsmachine account. You can use utilities like LDP or ADSIEdit to
correct the problem. I prefer to use ADSIEdit to clear up the incorrect SPN
entry on the machine account. Adsiedit.msc and Ldp.exe are included on the
Windows 2000 installation CD. You can install these tools from the CD in
Support\Tools\Setup.exe.

Warning:
Only experienced administrators should use these tools because removing the
wrong entries in either Ldp.exe or Adsiedit.msc can require reinstallation
of the computer or domain.

Open ADSIEdit.msc
Expand your Domain NC
Expand your the "Distinguished Name" for your domain
Expand the Container or OU which the computer exists (OU=Domain
Controllers, or CN=Computers)
Located the "Machine Account" that was rename and right click and choose
properties
Using the Drop Menu locate the "servicePrincipalName" attribute
Review the list and you should be able to determine the conflicting SPN(s),
the SPN will show the OLD Computer name.
Remove the SPN
Force Replication and Reboot the machine.

Reference Knowledgebase Article:
305971 Windows 2000 Server Prompts Domain User for Credentials
http://support.microsoft.com/?id=305971

Best Regards,
Ben Ybarra, Microsoft

Please do not send email directly to this alias. This is my online account
name for newsgroup participation only.

This posting is provided "AS IS" with no warranties, and confers no rights.
 
G

Guest

I have had this same message on the Root DC's and child DC's but not on the Domain that the server belongs to. The server was a DC and it had an object in both the Domain controllers container and the Computers container. I demoted the server but the event logs still exists. I cannot locate any duplcates in ADSI or LDAP. The only duplicate I find is when I attempt to use Eventvwr from a server in another domain and I browse for a PC to connect to I see two entires for the server one normal and one with a CNF:********* entry indicating a conflict. I have been all over AD and I do not see this attribute...Please help
 

Ask a Question

Want to reply to this thread or ask your own question?

You'll need to choose a username for the site, which only take a couple of moments. After that, you can post your question and our members will help you out.

Ask a Question

Similar Threads


Top