I'm having trouble with clients logging into the domain. This is a out of nowhere issue. I did have some Group policy issues about a month ago where they all disapeared from the sysvol. I got that fixed by just reapplying GP via the editor. I'm not sure if this issue has been going on since then because I just heard about it.
On my domain controler I have no bangs about login issue or anything but on the clients I get the following bangs
Application events=========
Event Type: Error
Event Source: Userenv
Event Category: None
Event ID: 1054
Date: 12/3/2004
Time: 4:48:13 PM
User: NT AUTHORITY\SYSTEM
Computer: CORPIT04
Description:
Windows cannot obtain the domain controller name for your computer network. (The specified domain either does not exist or could not be contacted. ). Group Policy processing aborted.
For more information, see Help and Support Center at
http://go.microsoft.com/fwlink/events.asp.
Event Type: Error
Event Source: UserInit
Event Category: None
Event ID: 1000
Date: 12/3/2004
Time: 4:48:23 PM
User: N/A
Computer: CORPIT04
Description:
Could not execute the following script logon.bat. The system cannot find the file specified.
.
For more information, see Help and Support Center at
http://go.microsoft.com/fwlink/events.asp.
System Events ==============
Event Type: Error
Event Source: NETLOGON
Event Category: None
Event ID: 5719
Date: 12/3/2004
Time: 4:48:13 PM
User: N/A
Computer: CORPIT04
Description:
No Domain Controller is available for domain Mydomain due to the following:
There are currently no logon servers available to service the logon request. .
Make sure that the computer is connected to the network and try again. If the problem persists, please contact your domain administrator.
For more information, see Help and Support Center at
http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 5e 00 00 c0 ^..À
Event Type: Warning
Event Source: W32Time
Event Category: None
Event ID: 14
Date: 12/3/2004
Time: 4:48:18 PM
User: N/A
Computer: CORPIT04
Description:
The time provider NtpClient was unable to find a domain controller to use as a time source. NtpClient will try again in 15 minutes.
For more information, see Help and Support Center at
http://go.microsoft.com/fwlink/events.asp.
Event Type: Error
Event Source: W32Time
Event Category: None
Event ID: 29
Date: 12/3/2004
Time: 4:48:18 PM
User: N/A
Computer: CORPIT04
Description:
The time provider NtpClient is configured to acquire time from one or more time sources, however none of the sources are currently accessible. No attempt to contact a source will be made for 14 minutes. NtpClient has no source of accurate time.
For more information, see Help and Support Center at
http://go.microsoft.com/fwlink/events.asp.
Event Type: Warning
Event Source: LSASRV
Event Category: SPNEGO (Negotiator)
Event ID: 40960
Date: 12/3/2004
Time: 4:48:23 PM
User: N/A
Computer: CORPIT04
Description:
The Security System detected an attempted downgrade attack for server cifs/192.168.1.248. The failure code from authentication protocol Kerberos was "There are currently no logon servers available to service the logon request.
(0xc000005e)".
For more information, see Help and Support Center at
http://go.microsoft.com/fwlink/events.asp.
Event Type: Warning
Event Source: LSASRV
Event Category: SPNEGO (Negotiator)
Event ID: 40961
Date: 12/3/2004
Time: 4:48:23 PM
User: N/A
Computer: CORPIT04
Description:
The Security System could not establish a secured connection with the server cifs/192.168.1.248. No authentication protocol was available.
For more information, see Help and Support Center at
http://go.microsoft.com/fwlink/events.asp.
Event Type: Warning
Event Source: LSASRV
Event Category: SPNEGO (Negotiator)
Event ID: 40960
Date: 12/3/2004
Time: 4:48:23 PM
User: N/A
Computer: CORPIT04
Description:
The Security System detected an attempted downgrade attack for server cifs/mydomain.com. The failure code from authentication protocol Kerberos was "There are currently no logon servers available to service the logon request.
(0xc000005e)".
For more information, see Help and Support Center at
http://go.microsoft.com/fwlink/events.asp.
Event Type: Warning
Event Source: LSASRV
Event Category: SPNEGO (Negotiator)
Event ID: 40960
Date: 12/3/2004
Time: 4:48:44 PM
User: N/A
Computer: CORPIT04
Description:
The Security System detected an attempted downgrade attack for server cifs/dc.mydomain.com. The failure code from authentication protocol Kerberos was "There are currently no logon servers available to service the logon request.
(0xc000005e)".
For more information, see Help and Support Center at
http://go.microsoft.com/fwlink/events.asp.
The computer I'm trying to log in with is a WinXP SP2 machine. Both server and client are updated. I've dropped and readded the computer from the domain. I have a lmhost file and host file both pointing to the DC. I've flushed DNS, and rebooted about 200 times....
I'll be watching my e-mail so if their is a question please post and I should get back to is as soon as possable.
thanks in advance