Solved

Error 4625 "An account failed to log on"

Posted on 2013-06-05
1
487 Views
Last Modified: 2013-06-10
Using a Win2008 server with RDS active. Getting numerious Error 4625 on the server. As of the last 2 days, there were 11,850 attempts. Our domain (DNS & DHCP) are handled on a SBS Win2003 server; the Win2008 is doing the heavy lifting.
Our intent is to move all functions over to the Win2008 server and disconnect the Win2003 server. The firewall is currently on the Win2003 server.
What steps can we take?
0
Comment
Question by:deanind
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
1 Comment
 
LVL 14

Accepted Solution

by:
BlueCompute earned 500 total points
ID: 39225151
Is RDP exposed to the internet?  Chances are it is getting brute-force attacked by an automated process.  One option would be to implement Terminal Services Gateway - this means you only open 443 rather than 3389, which gets a lot of attacks.  Also review: http://security.stackexchange.com/questions/17352/win-server-2008-rdp-attack
0

Featured Post

Problems using Powershell and Active Directory?

Managing Active Directory does not always have to be complicated.  If you are spending more time trying instead of doing, then it's time to look at something else. For nearly 20 years, AD admins around the world have used one tool for day-to-day AD management: Hyena. Discover why

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

A procedure for exporting installed hotfix details of remote computers using powershell
For anyone that has accidentally used newSID with Server 2008 R2 (like I did) and hasn't been able to get the server running again because you were unlucky (as I was) and had no backups - I was able to get things working by doing a Registry Hive rec…
This tutorial will walk an individual through the steps necessary to configure their installation of BackupExec 2012 to use network shared disk space. Verify that the path to the shared storage is valid and that data can be written to that location:…
This tutorial will walk an individual through the steps necessary to enable the VMware\Hyper-V licensed feature of Backup Exec 2012. In addition, how to add a VMware server and configure a backup job. The first step is to acquire the necessary licen…

717 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question