Event ID 677 security errors

M

Mark Koenig

I have an AD forest with one domain and 8 servers. 4 of
the servers are domain controllers. I get a lot
of "Failure Audit" 677 errors in the event logs. On one of
the errors a ticket request was refused on a machine that
was asking itself for a ticket on 127.0.0.1. It occurs
with both machine and user accounts. I understand that
these errors will happen on occasion but I get too many to
be normal operation.

Source: Security Event ID:677
Service Ticket Request Failed:
User Name: SOMEMACHINE$
User Domain: SOME.AD.DOMAIN
Service Name: krbtgt/SOME.AD.DOMAIN
Ticket Options: 0x2
Failure Code: 0x20
Client Address: 127.0.0.1


I have seen KB articles about passthrough authentication
problems that will give this error when working with NT4
but there is now and never has been NT4 anything
associated with this forest.

Does anyone know what might cause this problem.
 
I

IBTerry [MSFT]

Hello

Is this a Win2003 domain? If so I believe there is a Kerberos issue that
causes that error on Win2K DCs in a Win2003 domain.
If this fits your situation...you can call Microsoft Product Support and
open a case. You would not be charged for an issue that is resolved w/ a
hot fix.

IBTerry [MSFT]
This posting is provided "AS IS" with no warranties, and confers no rights.
 

Ask a Question

Want to reply to this thread or ask your own question?

You'll need to choose a username for the site, which only take a couple of moments. After that, you can post your question and our members will help you out.

Ask a Question

Top