I received an Source:KDC, Event ID 11;
There are multiple accounts with name cifs/ATACS of type DS_SERVICE_PRINCIPAL_NAME.
on my Primary DC I just used to create (new child domain). I followed the the steps to find the duplicate SPN through this article;
http://support.microsoft.com/kb/321044/en-usbut am unable to identify the correct SPN to delete form the output below. Can someone look at this log and tell me or give me a command to identify the correct SPN? Thanks.
C:\>ldifde -f check_SPN.txt -t 3268 -d "" -l servicePrincipalName -r "(servicePr
incipalName=HOST/ATACS*)" -p subtree
Connecting to "ATACS.roman.walters.labs.
dabco.com"
Logging in as current user using SSPI
Exporting directory to file check_SPN.txt
Searching for entries...
Writing out entries..
2 entries exported
The command has completed successfully
C:\>
<--OUTPUT-->
dn: CN=ATACS,OU=Domain Controllers,DC=roman,DC=wa
lters,DC=l
abs,DC=dab
co,DC=com
changetype: add
servicePrincipalName: ldap/ATACS.roman.walters.l
abs.dabco.
com/Forest
DnsZones.w
alters.lab
s.dabco.co
m
servicePrincipalName: ldap/ATACS.roman.walters.l
abs.dabco.
com/Domain
DnsZones.r
oman.walte
rs.labs.da
bco.com
servicePrincipalName: GC/ATACS.roman.walters.lab
s.dabco.co
m/walters.
labs.dabco
.com
servicePrincipalName: HOST/ATACS.roman.walters.l
abs.dabco.
com/roman
servicePrincipalName: HOST/ATACS
servicePrincipalName: HOST/ATACS.roman.walters.l
abs.dabco.
com
servicePrincipalName: HOST/ATACS.roman.walters.l
abs.dabco.
com/roman.
walters.la
bs.dabco.c
om
servicePrincipalName: E3514235-4B06-11D1-AB04-00
C04FC2DCD2
/fe66d74c-
51b4-4992-
9e17-6db5c
0a18441/ro
man.walter
s.labs.dab
co.com
servicePrincipalName: ldap/fe66d74c-51b4-4992-9e
17-6db5c0a
18441._msd
cs.walters
.labs.dabc
o.com
servicePrincipalName: ldap/ATACS.roman.walters.l
abs.dabco.
com/roman
servicePrincipalName: ldap/ATACS
servicePrincipalName: ldap/ATACS.roman.walters.l
abs.dabco.
com
servicePrincipalName: ldap/ATACS.roman.walters.l
abs.dabco.
com/roman.
walters.la
bs.dabco.c
om
servicePrincipalName: NtFrs-88f5d2bd-b646-11d2-a
6d3-00c04f
c9b232/ATA
CS.roman.w
alters.lab
s.dabco.co
m
servicePrincipalName: DNS/ATACS.roman.walters.la
bs.dabco.c
om
dn: CN=ATACS,CN=Computers,DC=w
alters,DC=
labs,DC=da
bco,DC=com
changetype: add
servicePrincipalName: NtFrs-88f5d2bd-b646-11d2-a
6d3-00c04f
c9b232/ATA
CS.walters
.labs.dabc
o.com
servicePrincipalName: HOST/ATACS
servicePrincipalName: HOST/ATACS.walters.labs.da
bco.com