How do I solve Event 513 CAPI2?

techcodr
techcodr used Ask the Experts™
on
Cryptographic Services failed while processing the OnIdentity() call in the System Writer Object.

Details:
AddLegacyDriverFiles: Unable to back up image of binary Microsoft Link-Layer Discovery Protocol.

System Error:
Access is denied.
Comment
Watch Question

Do more with

Expert Office
EXPERT OFFICE® is a registered trademark of EXPERTS EXCHANGE®
Kyle SantosSoftware Test Analyst I at Dassault Systemes

Commented:
Hi,

I am here to help you with your open question.  Do you still need help?  I have the ability to alert more experts if you still need help.

If you solved the problem on your own, would you please post the solution here in case others have the same problem?

If you need me to delete this question just say "Delete."

Thank you for using Experts Exchange.

Regards,

Kyle Santos
Customer Relations

Author

Commented:
Yes, I could still use help. I have no answer.
Kyle SantosSoftware Test Analyst I at Dassault Systemes

Commented:
Could you provide some context on what happened to get what you have posted?  
What is the problem you're trying to solve?
Ensure you’re charging the right price for your IT

Do you wonder if your IT business is truly profitable or if you should raise your prices? Learn how to calculate your overhead burden using our free interactive tool and use it to determine the right price for your IT services. Start calculating Now!

Author

Commented:
I am trying to up with the solution to stop this error from occurring.

Author

Commented:
Seems the first link goes to the second link.

I could not start with the second link solution because accesschk.exe is not recognized as a command.

:\Windows\system32>accesschk.exe -c mslldp
'accesschk.exe' is not recognized as an internal or external command,
operable program or batch file.
Wesley MillerComputer Network Analyst

Commented:
Yes the first link does as first gives details and the second one solution.
Accesschk.exe is a microsft sysinternals file, can be downloaded here:
https://docs.microsoft.com/en-us/sysinternals/downloads/accesschk

Author

Commented:
I could not exactly follow the instructions.
1. The Windows Server 2016 is 64 bits so I had to start with  accesschk64 -c mslldp (did not need the .exe)

2. I was not exactly clear where to put the (A;;CCLCSWLOCRRC;;;SU)
Given:
accesschk.exe -c mslldp
mslldp
  RW NT AUTHORITY\SYSTEM
  RW BUILTIN\Administrators
  RW S-1-5-32-549       <- these are server operators
  R  NT SERVICE\NlaSvc

1. Run: SC sdshow MSLLDP
You'll get something like below (SDDL language is documented on MSDN):
 
D:(D;;CCDCLCSWRPWPDTLOCRSDRCWDWO;;;BG)(A;;CCDCLCSWRPWPDTLOCRSDRCWDWO;;;SY)(A;;CCDCLCSWRPDTLOCRSDRCWDWO;;;BA)(A;;CCDCLCSWRPWPDTLOCRSDRCWDWO;;;SO)(A;;LCRPWP;;;S-1-5-80-3141615172-2057878085-1754447212-2405740020-3916490453)S:(AU;FA;CCDCLCSWRPWPDTLOCRSDRCWDWO;;;WD)
Four items listed in accesschk.exe -c mslldp but the divisions were more in SC sdshow MSLLDP using () to separate items.
D:(D;;CCDCLCSWRPWPDTLOCRSDRCWDWO;;;BG)
(A;;CCDCLCSWRPWPDTLOCRSDRCWDWO;;;SY)
(A;;CCDCLCSWRPDTLOCRSDRCWDWO;;;BA)
(A;;CCDCLCSWRPWPDTLOCRSDRCWDWO;;;SO)
(A;;LCRPWP;;;S-1-5-80-3141615172-2057878085-1754447212-2405740020-3916490453)S:(AU;FA;CCDCLCSWRPWPDTLOCRSDRCWDWO;;;WD)

Looks like four lines and some sort of closer.  Seems the (A;;CCLCSWLOCRRC;;;SU) should be before (A;;LCRPWP;;;S-1-5-80-3141615172-2057878085-1754447212-2405740020-3916490453)S:(AU;FA;CCDCLCSWRPWPDTLOCRSDRCWDWO;;;WD).

But the link says put in the middle of the last line.
(A;;LCRPWP;;;S-1-5-80-3141615172-2057878085-1754447212-2405740020-3916490453)(A;;CCLCSWLOCRRC;;;SU)S:(AU;FA;CCDCLCSWRPWPDTLOCRSDRCWDWO;;;WD)
That looks wrong.

Link says Take NT AUTHORITY\ SERVICE entry, which is (A;;CCLCSWLOCRRC;;;SU) and add it to the original MSLLDP security descriptor properly, right before the last S:(AU... group.  But did not get an S:

I decided to put the (A;;CCLCSWLOCRRC;;;SU) in front of the last line.
Which seemed to work.

C:\>accesschk64 -c mslldp

Accesschk v6.12 - Reports effective permissions for securable objects
Copyright (C) 2006-2017 Mark Russinovich
Sysinternals - www.sysinternals.com

mslldp
  RW NT AUTHORITY\SYSTEM
  RW BUILTIN\Administrators
  R  BUILTIN\Server Operators
  R  NT AUTHORITY\SERVICE
  R  NT SERVICE\NlaSvc

Do more with

Expert Office
Submit tech questions to Ask the Experts™ at any time to receive solutions, advice, and new ideas from leading industry professionals.

Start 7-Day Free Trial