Event ID 40960

G

Guest

on a WinXP Pro (SP2, incl. latest Patches) The user account has been
automatically locked . DC Win2003.

Event ID: 40690
Type: Warning
Usre: N/A
Source: LSASRV
Category: SPNEGO (Negotiator)

Description:
The Security System detected an attempted downgrade attack for server
cifs/SERVERNAME.DOMAINNAME.net. The failure code from authentication
protocol Kerberos was "The user account has been automatically locked because
too many invalid logon attempts or password change attempts have been
requested.
(0xc0000234)".

For more information, see Help and Support Center at
http://go.microsoft.com/fwlink/events.asp.
---------------------------------------------------------------------------

there is also a secon Event after 40960:

Event ID: 40691
Type: Warning
Usre: N/A
Source: LSASRV
Category: SPNEGO (Negotiator)

Description:
The Security System could not establish a secured connection with the server
cifs/SERVERNAME.DOMAINNAME.net. No authentication protocol was available.

For more information, see Help and Support Center at
http://go.microsoft.com/fwlink/events.asp.
 

Ask a Question

Want to reply to this thread or ask your own question?

You'll need to choose a username for the site, which only take a couple of moments. After that, you can post your question and our members will help you out.

Ask a Question

Top