Results 1 to 4 of 4

Thread: target principle name is incorrect

  1. #1
    Join Date
    Jul 2006
    Posts
    48

    target principle name is incorrect

    I am getting error on my backup 2003 server stating that "Naming information cannot be located because: The target principle name is incorrect" whenever my backup DC tries to start an Active Directory console such as Users and Computers. I also found in the event viewer "system log Event ID 4, Kerberos client received a KRB_AP_ERR_MODIFIED error from the server (the PDC is listed)". After that the error mentions "password used to encrypt the Kerberos service ticket is different than that on the target server. Commonly, this is due to identically named machine accounts in the target realm (domain listed) and the client realm". I have followed a microsoft article and it did get my AD synchronized only once, but it went back to the original error upon restarting my backup server. Any ideas?

  2. #2
    Join Date
    Jan 2006
    Posts
    4,221

    Re: target principle name is incorrect

    I think that you need to enter in the below location:

    netdom resetpwd /server:nameofpdc /userd:domain_name\administrator /passwordd:administrator_password

    The KDC should be disabled on the Server that has the issue. Can you check your system time which must be in sync with the PDC emulator. The second DC syncs its time with the PDC emulator. Time differences can cause kerberos issues.

  3. #3
    Join Date
    Jan 2006
    Posts
    4,545
    Can you try to check the DNS, forget about the reset password. Are there any kind of duplicated records, both A and PTR? You need to make sure you have one-to-one mapping between IP and host name for all the DC and affected servers. Also make sure all your SRV records are registered properly.

  4. #4
    Join Date
    Nov 2005
    Posts
    403
    After you have resetted the password you should restart server 2. After the successful restart you can start the kdc service. You dont have to start the kdc on server2 before you started the server again.

Similar Threads

  1. Principle and Construction of MPLS VPN
    By Acalapati in forum Networking & Security
    Replies: 5
    Last Post: 10-03-2010, 01:57 AM
  2. The target principal name is incorrect?
    By Alexyy in forum Active Directory
    Replies: 8
    Last Post: 03-09-2009, 10:17 PM
  3. The target principal name is incorrect. (-2146893022)
    By Russyan in forum Small Business Server
    Replies: 19
    Last Post: 15-12-2008, 04:19 PM
  4. Logon failure: the target account name is incorrect
    By Aadimoolan in forum Window 2000 Help
    Replies: 2
    Last Post: 01-08-2007, 01:23 AM
  5. Target Principal name incorrect
    By Robbin M in forum Active Directory
    Replies: 1
    Last Post: 01-01-2007, 06:23 AM

Tags for this Thread

Bookmarks

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •  
Page generated in 1,713,241,635.08301 seconds with 16 queries