IPSEC fails to start after installing SP1 for Windows 2003 on Domain Controller/Global catalog server
Eventlog (ID 4292) says:
IPSEC driver has entered block mode. Ipsec will discard all inbound and outbound TCP/IP network traffic that is not permitted by boot-time IPSec Policy exemptions. To restore full unsecured TCP/IP connectivity, disable the IPSec services, and then restart the computer. This is event id 4292. This is a Windows 2003 server machine.
Manually trying to start IPSEC service:
Could not start the IPSEC service
ERROR 2: The system cannot find the file specified.
Also a few Kerberos errors in security log at the same time:
Event ID 537
Logon process authz
Authentication package Kerberos
IF I uninstall w2k3 SP1 eveything works again perfectly.