cgooden01
asked on
Smart Card Logon - Event 21: PIV Authentication Event 21
Please HELP!!! Now this is going on approximately 6 months now and the only resolve this to this is rebooting our Domain Controllers in our environment. We have spend countless dollars having Microsoft review logs, webX and remote administration but to know avail as it relates to Event 21 errors with the use of Smart Cards
NOTE: PIV card - Certificate error - smart card certificate used for authentication is not trusted.
We use SolarWinds Monitoring tool to alert of us critical events that will affect our operations and availability to the customer. I suspect an issue with Replication from our OCSP Servers to CA, etc. <See Attachment >
Application Name: PIV Authentication Event Monitor
Components with Issues: Event ID 21(Down)
Event Details: --- Event 1 of 1:
Log Name: System
Source: Microsoft-Windows-Kerberos -Key-Distr ibution-Ce nter
Logged: 12/06/2018 15:12:59
Event ID: 21
Level: Warning
User:
Computer: HQ1-XXXXX-S5.example.com
The client certificate for the user HQ\_jdoe is not valid, and resulted in a failed smartcard logon. Please contact the user for more information about the certificate they're attempting to use for smartcard logon. The chain status was : The operation completed successfully.
replication_info.png
Site-Intervals.png
NOTE: PIV card - Certificate error - smart card certificate used for authentication is not trusted.
We use SolarWinds Monitoring tool to alert of us critical events that will affect our operations and availability to the customer. I suspect an issue with Replication from our OCSP Servers to CA, etc. <See Attachment >
Application Name: PIV Authentication Event Monitor
Components with Issues: Event ID 21(Down)
Event Details: --- Event 1 of 1:
Log Name: System
Source: Microsoft-Windows-Kerberos
Logged: 12/06/2018 15:12:59
Event ID: 21
Level: Warning
User:
Computer: HQ1-XXXXX-S5.example.com
The client certificate for the user HQ\_jdoe is not valid, and resulted in a failed smartcard logon. Please contact the user for more information about the certificate they're attempting to use for smartcard logon. The chain status was : The operation completed successfully.
replication_info.png
Site-Intervals.png
ASKER CERTIFIED SOLUTION
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.