Go Premium for a chance to win a PS4. Enter to Win

x
?
Solved

windows credentials

Posted on 2011-09-04
8
Medium Priority
?
327 Views
Last Modified: 2012-05-12
i am getting this error everyday on AD server where as the client IP address is my Windows Updates server WSUS please see the below error and suggest the solution and cause of it to resolve


Pre-authentication failed: User Name: Administrator User ID: CTIN\Administrator Service Name: krbtgt/ctin Pre-Authentication Type: 0x2 Failure Code: 0x18 Client Address: 10.133.146.15
0
Comment
Question by:fusisraj
8 Comments
 
LVL 57

Expert Comment

by:Mike Kline
ID: 36480655
Is thie a 675 error in the log, make sure to double check the password for that account on that box.  More info in this article

http://technet.microsoft.com/en-us/library/cc776964(WS.10).aspx

Is the account locking out on you?

Thanks

Mike
0
 
LVL 24

Accepted Solution

by:
Awinish earned 2000 total points
ID: 36480762
Pre-authentication code 0x18 means bad password. You need to check the system 10.133.146.15  listed in your post which is generating such event. It can be due to service account configured or mapped drive whose password has been changed.

http://www.experts-exchange.com/Security/Operating_Systems_Security/Windows/Q_20418480.html
0
 

Author Comment

by:fusisraj
ID: 36480797
thanks for your reply i will try and update the result....Rajesh
0
Has Powershell sent you back into the Stone Age?

If managing Active Directory using Windows Powershell® is making you feel like you stepped back in time, you are not alone.  For nearly 20 years, AD admins around the world have used one tool for day-to-day AD management: Hyena. Discover why.

 
LVL 1

Expert Comment

by:praveen_16july
ID: 36483664
Remove and Re-Join that machine to the domain server and run this command through command prompt on client machine "gpupdate /Force"

0
 

Author Comment

by:fusisraj
ID: 36484613

thanks for your suggention however it might cause some error.
That Machine is WSUS and Microsoft FCS server and i can see in MS SQL 2005 dB log section of WinNT which says the DC did not allow Macine (WSUS Server with its IP ) to claim by its name

i also found advapi is the source which is also creating some issue.

Rajesh.
0
 
LVL 24

Expert Comment

by:Awinish
ID: 36484786
You need to scan the machine by some good anitivurs & make sure system is running with latest SP & patches which keeps virus/worm at bay.

Regards
________________________________________
Awinish Vishwakarma
MY BLOG:  http://awinish.wordpress.com
0
 

Assisted Solution

by:fusisraj
fusisraj earned 0 total points
ID: 36536199
It seems that somewhere the administrator password has been saved so i decided to rollback the changed password and cleanup the WSUS as well.

This is good that i have cleaned up the mash of WSUS however i need to reset the password and have to find where the administrator credentials have been entered

Rajesh Vishwakarma

0
 

Author Closing Comment

by:fusisraj
ID: 36895799
As because the Solution resolved the issue and found what could be the other cause of WSUS.
0

Featured Post

Prepare for your VMware VCP6-DCV exam.

Josh Coen and Jason Langer have prepared the latest edition of VCP study guide. Both authors have been working in the IT field for more than a decade, and both hold VMware certifications. This 163-page guide covers all 10 of the exam blueprint sections.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

This process allows computer passwords to be managed and secured without using LAPS. This is an improvement on an existing process, enhanced to store password encrypted, instead of clear-text files within SQL
A bad practice commonly found during an account life cycle is to set its password to an initial, insecure password. The Password Reset Tool was developed to make the password reset process easier and more secure.
Attackers love to prey on accounts that have privileges. Reducing privileged accounts and protecting privileged accounts therefore is paramount. Users, groups, and service accounts need to be protected to help protect the entire Active Directory …
There are cases when e.g. an IT administrator wants to have full access and view into selected mailboxes on Exchange server, directly from his own email account in Outlook or Outlook Web Access. This proves useful when for example administrator want…
Suggested Courses

877 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question