?
Solved

Failure Audit with Source = Security and Event ID= 680

Posted on 2011-05-10
8
Medium Priority
?
673 Views
Last Modified: 2012-05-11
Hi,


I always get a Failure Audit with Source = Security and Event ID= 680 when I connected from an application to Server1 (Windows 2003).However my account works fine when I try to connect. I can acces to Server1 without any prob. What is the cause of that event?

Event Type:      Failure Audit
Event Source:      Security
Event Category:      Account Logon
Event ID:      680
Date:            5/10/2011
Time:            2:42:55 AM
User:            NT AUTHORITY\SYSTEM
Computer:      Server1
Description:
Logon attempt by:      MICROSOFT_AUTHENTICATION_PACKAGE_V1_0
 Logon account:      JEFHENTT
 Source Workstation:      \\10.140.14.249
 Error Code:      0xC0000064
0
Comment
Question by:SAM2009
  • 4
  • 4
8 Comments
 
LVL 44

Expert Comment

by:Amit
ID: 35729341
Check on 10.140.14.249 server, if you have configured any task with your Id by using old password. If you are unable to figure out. Simple solution is to append a numeric with your login name under account tab in ADUC.

Say if your username is USER change it to USER1 and then test it,
0
 
LVL 1

Author Comment

by:SAM2009
ID: 35729537
No there is no prob with my account because I retypd it from the application on another server and it says acces on ok (On the application). Also there is same prob with others accounts: They can access but Failure Audit is still there.

I should mention: my account is on domain1 and server1 is on domain2... but there is a trust between them
0
 
LVL 44

Accepted Solution

by:
Amit earned 2000 total points
ID: 35729598
0
 [eBook] Windows Nano Server

Download this FREE eBook and learn all you need to get started with Windows Nano Server, including deployment options, remote management
and troubleshooting tips and tricks

 
LVL 44

Expert Comment

by:Amit
ID: 35729607
this is for XP...i assume same should work for other Windows OS too.
0
 
LVL 1

Author Comment

by:SAM2009
ID: 35731525
Ya but this is just the workaround no?
0
 
LVL 44

Expert Comment

by:Amit
ID: 35732442
This is the solution from MS for this issue. Renaming account is also simple solution. Which i have given in about post.
0
 
LVL 1

Assisted Solution

by:SAM2009
SAM2009 earned 0 total points
ID: 35747369
Tell me is it possible that Windows verifies just the SAM accoount first (just with account name) and after that it verifies with domain\account?


Event Type:      Success Audit
Event Source:      Security
Event Category:      Logon/Logoff
Event ID:      576
Date:            5/10/2011
Time:            2:28:27 PM
User:            DOMAIN1\JEFHENTT
Computer:      Server1
Description:
Special privileges assigned to new logon:
       User Name:      JEFHENTT
       Domain:            DOMAIN1
       Logon ID:            (0x0,0xEABDCEC3)
       Privileges:      SeSecurityPrivilege
                  SeBackupPrivilege
                  SeRestorePrivilege
                  SeTakeOwnershipPrivilege
                  SeDebugPrivilege
                  SeSystemEnvironmentPrivilege
                  SeLoadDriverPrivilege
                  SeImpersonatePrivilege
0
 
LVL 1

Author Closing Comment

by:SAM2009
ID: 35810206
Thanks anyway.
0

Featured Post

Get quick recovery of individual SharePoint items

Free tool – Veeam Explorer for Microsoft SharePoint, enables fast, easy restores of SharePoint sites, documents, libraries and lists — all with no agents to manage and no additional licenses to buy.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Uncontrolled local administrators groups within any organization pose a huge security risk. Because these groups are locally managed it becomes difficult to audit and maintain them.
Wouldn't it be nice if objects in Active Directory automatically moved into the correct Organizational Units? This is what AutoAD aims to do and as a plus, it automatically creates Sites, Subnets, and Organizational Units.
This video shows how to use Hyena, from SystemTools Software, to bulk import 100 user accounts from an external text file. View in 1080p for best video quality.
This video shows how to use Hyena, from SystemTools Software, to update 100 user accounts from an external text file. View in 1080p for best video quality.

750 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question