OCS 2007 R2 auto sign in works, manual doesn't

Posted on 2010-01-06
Last Modified: 2013-11-29
So our OCS has been working pretty much properly since it was set up.  There's only one thing that's been bugging me--when we first set up the server, either automatic or manual sign in worked.

Now, only automatic sign in works.  If you "log out" of communicator while it's running & try to log back in, you're prompted for your sign-in address, username, and password.  

When using the appropriate sign-in address (know it's the right one due to the OCS management console), username (taken from the user's ADSIEdit principle name, & tried in the format DOMAIN\username, DOMAIN.COM\user, as well as & password, we are still given an error that the password is incorrect.

Now, the only way short of logging out of windows & logging back in is to delete the HKCU\Software\Microsoft\Shared\UcClient keys for sign-in address & username.

Any ideas?
Question by:tnesupport
    LVL 3

    Expert Comment

    I think automatic sign in can use Kerberos while manual sign-in probably uses NTLM.  I might check the lanman authentication level on the client and front-end OCS server to make sure they are compatible (for example, make sure the client is not set to LM or NTLM if the server is set to only NTLMv2).  This setting can be viewed at policy (local or group)\local policies\security options\network security:lan manager authentication level.
    LVL 33

    Expert Comment

    how did you configured your manual server settings, it should point to the pool name if you are running enterprise edition. I believe this is the issue.
    LVL 1

    Author Comment

    busbar, I mean that when communicator hits AD it signs in fine (for example, when OCS opens at windows log in), yet when it prompts for my sign-in address & username & password (say for instance, after I log out of OCS), it doesn't work.

    JoltinJoe, this what the direction I was thinking too..I'll give it a shot tomorrow--think Windows 7 might have something to do with this? (all the problem machines are Win 7)
    LVL 33

    Expert Comment

    nop both uses kerberos,
    can you tell me any errors in the event viewer also enable communicator debugging as it will help
    LVL 1

    Accepted Solution

    hrm, for some reason after checking all DC times, I found one was 4 hours off (in pacific, rather than eastern time zone)..after fixing this everything seems to be working ok.

    Thanks anyway guys.

    Write Comment

    Please enter a first name

    Please enter a last name

    We will never share this with anyone.

    Featured Post

    Don't lose your head updating email signatures!

    Do your end users still have the wrong email signature? Do email signature updates bore you or fill you with a sense of dread? You can make this a whole lot easier on yourself by trusting an Exclaimer email signature management solution. Over 50 million users should you!

    After having deployed hundreds of thousands of Terminal Services seats worldwide, I still see all the time people asking me that same old question: "If TS/RDS is that reliable why are you telling me I should reboot it that often? My DC/SQL/Exchange/…
    Welcome to my series of short tips on migrations. Whilst based on Microsoft migrations the same principles can be applied to any type of migration. My first tip Migration Tip #1 – Source Server Health can be found listed in my profile here: http:…
    To add imagery to an HTML email signature, you have two options available to you. You can either add a logo/image by embedding it directly into the signature or hosting it externally and linking to it. The vast majority of email clients display l…
    Internet Business Fax to Email Made Easy - With eFax Corporate (, you'll receive a dedicated online fax number, which is used the same way as a typical analog fax number. You'll receive secure faxes in your email, fr…

    760 members asked questions and received personalized solutions in the past 7 days.

    Join the community of 500,000 technology professionals and ask your questions.

    Join & Ask a Question

    Need Help in Real-Time?

    Connect with top rated Experts

    8 Experts available now in Live!

    Get 1:1 Help Now