Link to home
Start Free TrialLog in
Avatar of SeTech
SeTechFlag for United States of America

asked on

Domain account locks out on computer startup

Hi Experts-

I and one of my coworkers are having an issue where every morning when we come in to work and turn on our laptops, our Windows accounts are locked out. Once unlocked, the accounts stay unlocked until the computer is turned off or restarted. Once the computer comes back up, the accounts lock out again.

Let me say at the get-go that I am not in any way shape or form a domain controller, and have no access to the domain logon servers. We do have a corporate policy where 3 incorrect password attempts will lock out a user account. The web console that performs the unlocking consistently shows 3 bad password attempts from our usernames even though we haven't even logged into Windows yet. Somehow the act of starting Windows sends multiple bad passwords.

I've read as much as I can find online about this problem, and I don't believe it has anything to do with network shares or Windows services, because as I said, the lockouts occur during Windows startup before login. My coworker and I have called our company's help desk and they have exhausted all their resources as well, and the only thing we have to go on are a couple of printouts of the login failure audits (I have attached this document). These do at least show that the lockouts are coming from our own particular laptops, which not only discounts that we're logged in to other computers using old passwords, but also explains why we're both able to log in to other computers without issue.

So without having to access the domain server or look at the Event Log, is there any way to figure out what is causing this problem just for the two of us, while none of the other unit members are experiencing it?
Server-toolbox.doc
Avatar of Member_2_4225740
Member_2_4225740

It sounds like you're trying to connect to a shared drive that's expecting a different password from what you currently use. Try changing your password from the Ctrl-Alt-Del window.
Avatar of SeTech

ASKER

Even before Windows logs in? There are no shared drives connected before Windows even logs in.

Also, neither my coworker nor I began experiencing this problem right after a password change. It began randomly one day with me, about 3 weeks before my next scheduled password change. 2 weeks later, my coworker started having the same problem, and he hadn't changed his password for weeks either.

Like I said, the usual culprits don't seem to match up here.
Try removing the network cable from your laptop before you boot your laptop, and leave it unplugged until after you've logged into Windows.  Then re-connect the cable.  (This isn't intended to be a solution, just a troubleshooting step.)  If the account doesn't lock up, then maybe a Windows service is trying to start during system bootup with an incorrect stored password.
Avatar of SeTech

ASKER

2 things -
- First off, that's actually what my coworker does to be able to get into the web console that we use to unlock ourselves...my method is just use a spare laptop to access it. So basically, you're spot-on, it doesn't lock us up until our computers are on our company's private network. If we use our laptops from home and log into Windows first, then into the VPN client, we don't get locked out at all.
- Secondly, I had read about Windows Services running under a user name and hadn't really been sure of that, but since you suggest that, I'll be perfectly willing to go along with that idea. So how can I really tell definitively what Windows Services are running at Startup, and under what usernames, so that I can really try and nail this problem down?
ASKER CERTIFIED SOLUTION
Avatar of Scott1201
Scott1201

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Avatar of SeTech

ASKER

Wonderful! This has been plaguing us for almost a year!!!
Avatar of SeTech

ASKER

WONDERFUL! Turns out some SQL Server 2005 services were set to Auto and had an old password associated! I disabled them, rebooted, and no lock! Thank you SO MUCH!
Setting those services to "manual" and/or correcting the password should fix the problem also, without having to disable the SQL Server functionality.  Glad that worked!