Re: Event ID 537 Digest Authentication

From: Ken Schaefer (kenREMOVE_at_THISadOpenStatic.com)
Date: 08/23/05


Date: Tue, 23 Aug 2005 11:39:55 +1000

Hi,

I'm not familiar enough with Digest Authentication to know exactly what's
going wrong here, however:

a) Can you post all the details of the 537 event please?

b) After enabling "store passwords using reversible encryption" for the user
in question, did you reset their password? (so that the reversible version
is now stored?)

Cheers
Ken

-- 
IIS Blog: www.adopenstatic.com/cs/blogs/ken/
Web: www.adopenstatic.com
"Isaac" <Isaac@discussions.microsoft.com> wrote in message 
news:F908C539-FA99-4B21-8360-92D4F3EA3246@microsoft.com...
:I have been fighting this for a few days now, so any help would be
: appreciated!!!!
:
: I am using a Windows 2003 SP1 server to setup a new website that will
: require authentication.  I have the only authentication for that web site 
set
: to be digest authentication.  This machine is not a domain controller, and 
my
: domain is Windows 2000.  I do have the following configured:
:
: Reversable encryption for user accounts
: Subauthentication installed on IIS server
: I have disabled the loopback check (even though I am doing an
: http://computername/folder)
: Realm is configured to my domain
:
: Everytime I try to athentication, my security log shows an event id 537 
for
: the WDIGEST logon process.  Browser (IE 6 SP1 latest and greatest patches)
: gets a 401.1 error as well.
:
: HELP!!!! 


Relevant Pages

  • Re: fetch plain text password from active directory
    ... The "Active Directory Cookbook" says the password is stored ... while explaining about Digest Authentication says ... where the password is stored using reversible encryption" ... Not sure what you mean by "plain text password" - passwords are not stored ...
    (microsoft.public.windows.server.general)
  • Re: Help understanding "Reversible Encryption"
    ... conjunction with Digest Authentication. ... (also includes link to a Help file with more detailed information.) ... > "Reversible Encryption" really is. ...
    (microsoft.public.windows.server.active_directory)
  • Re: Password Policy question
    ... Reversible encryption was needed for Digest authentication in IIS 5.0 where ... required for Advanced Digest in IIS 6.0. ... It is in no way related to cached credentials on workstations. ... I have some questions in "Store password using reversible encryption" ...
    (microsoft.public.windows.server.active_directory)
  • Re: store password using reversible encryption
    ... this mean to say chap and digest authentication shouldnt ... be use if they have to come with "store password using ... reversible encryption until they ... >use digest authentication. ...
    (microsoft.public.win2000.security)
  • Re: Digest Authentication
    ... Launch IIS process Account x\IWAM Read & execute, list, read ... But the Digest authentication for windows domain is ... THis means IIS impersonates the configured anonymous user account. ...
    (microsoft.public.inetserver.iis)