Results 1 to 3 of 3

Thread: pre-authentication failure from Win 7 machines on Win 2003 SP 2 DC

  1. #1
    Join Date
    Mar 2012
    Posts
    5

    pre-authentication failure from Win 7 machines on Win 2003 SP 2 DC

    Hello all,

    Since a few months, I'm constantly getting my account (which has admin rights) locked out in Active Directory. When looking in the event viewer of the DC's, it seems to be caused by pre-authentication failures with my user originating from multiple machines. The constant seems to be that they are all Windows 7 Pro SP1 machines that I have configured. (All copied from the same image). Also, it started when I changed my password. So, logically, it must be stored somewhere in Windows 7 and not be updated.

    The failure is:

    Event Type: Failure Audit
    Event Source: Security
    Event Category: Account Logon
    Event ID: 675
    Date: 15/03/2012
    Time: 16:05:24
    User: NT AUTHORITY\SYSTEM
    Computer: [DC_Name]
    Description:
    Pre-authentication failed:
    User Name: my_user
    User ID: DOMAIN\my_user
    Service Name: krbtgt/[DOMAIN]
    Pre-Authentication Type: 0x0
    Failure Code: 0x19
    Client Address: [CLIENT_IP_ADDRESS]

    At first glance, these seem to occur at completely random moments and intervals.

    I have already tried analyzing it with EventCombMT and LockOutStatus tools.

    Thanks for any hints that help me solve this annoying problem.

    Brgds,

    CZ

  2. #2
    Join Date
    Dec 2007
    Posts
    2,291

    Re: pre-authentication failure from Win 7 machines on Win 2003 SP 2 DC

    Pre-authentication can fail in environments where Vista/7/Server 2008/R2 systems are deployed within a 2003 Forest Functional Level (or below) AD domain. This is because the accounts first attempt AES Kerberos encryption, fail and then fall back to RC4-HMAC. DES encryption types are disabled by default on Vista+ systems. In our case, this error was fixed by updating the password for the credentials DHCP used for its DNS Dynamic updates registration.

  3. #3
    Join Date
    Mar 2012
    Posts
    5

    Re: pre-authentication failure from Win 7 machines on Win 2003 SP 2 DC

    Hello Einstein_007,

    Thanks for your reply. Our domain is at a 2003 Forest functional level. Would you mind clarifying some things for me, because this matter is quite new to me?

    - Shouldn't other users be affected by this also, then?
    - Isn't it strange that it only started to happen after I changed my password?
    - How/Where can I find the password DHCP uses and update it?

    Are there other solutions for this problem? Would introducing a 2008 R2 DC help?

    Thanks in advance for your help.

    Brgds,

    CZ

Similar Threads

  1. IAS use authentication failure (Reason code=16)
    By abeh555 in forum Windows Server Help
    Replies: 3
    Last Post: 09-01-2014, 10:04 AM
  2. Pre-Authentication Failure
    By samit in forum Active Directory
    Replies: 4
    Last Post: 06-01-2014, 11:05 AM
  3. Authentication failure in MTNL broadband
    By Victorious in forum India BroadBand
    Replies: 4
    Last Post: 25-01-2011, 07:48 AM
  4. Replies: 5
    Last Post: 21-08-2010, 01:33 AM
  5. AD 2003 Replication Failure/Authentication Failure
    By Nickason in forum Active Directory
    Replies: 1
    Last Post: 20-05-2005, 03:54 AM

Tags for this Thread

Bookmarks

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •  
Page generated in 1,714,100,725.62352 seconds with 17 queries