Re: Event id 537 flooding security log
From: Igor (igor@citytech.cuny.edu)
Date: 01/31/03
- Next message: Scott Wilhelm: "Log of Logon's"
- Previous message: S. Shen: "machine user (not member user) accesses mapped file problem"
- In reply to: Jennifer Lesher [MSFT]: "Re: Event id 537 flooding security log"
- Next in thread: James Coombes: "Re: Event id 537 flooding security log"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
From: "Igor" <igor@citytech.cuny.edu> Date: Fri, 31 Jan 2003 09:55:06 -0500
hi Jennifer,
I tried everything you have suggested, port 88 is not blocked and enabling
kerberos logging did not show any new errors.
And these ID are still being reported on all servers now, 2 DC and one stand
alone server. As per James suggestion, I don't have usernames the user id
as
computer names.
thanks in advance for your help.
""Jennifer Lesher [MSFT]"" <jennle@online.microsoft.com> wrote in message
news:rHIljnewCHA.1308@cpmsftngxa06...
>
> Please let me know if this solves your problem or if you would like
further
> assistance.
> Hello Igor,
>
> So far I'm finding a lot of information about this error but little of it
> tells us what to do about it. Here are my best suggestions:
>
> 1. Check to see if Port 88 is blocked. Having port 88 can cause this
> error to occur.
>
> 2. Enable Kerberos logging to see if we can isolate the cause in Kerberos.
> Sometimes this error can result from a failure of NTLM 2 authentication.
> If this is the cause, the error is not serious, but still annoying. Please
> see the article:
>
> 262177 HOW TO: Enable Kerberos Event Logging
> http://support.microsoft.com/?id=262177
>
> for instructions on Kerberos logging.
>
> Please let me know what you find.
>
> I look forward to hearing from you.
>
> Sincerely,
>
> Jennifer Lesher
> MCSE/MCDBA
> Microsoft Online Support
>
> This posting is provided "AS IS" with no warranties, and confers no
rights.
>
> Get Secure! - www.microsoft.com/security
>
>
> |
> | thanks for your help.
> |
> | Igor
> | ""Jennifer Lesher [MSFT]"" <jennle@online.microsoft.com> wrote in
message
> | news:HcL$1xRwCHA.648@cpmsftngxa06...
> | > Hi Igor,
> | >
> | > Still researching this. I hope to have more tomorrow.
> | >
> | > Sincerely,
> | >
> | > Jennifer Lesher
> | > MCSE/MCDBA
> | > Microsoft Online Support
> | >
> | > This posting is provided "AS IS" with no warranties, and confers no
> | rights.
> | >
> | > Get Secure! - www.microsoft.com/security
> | >
> |
> |
> |
>
- Next message: Scott Wilhelm: "Log of Logon's"
- Previous message: S. Shen: "machine user (not member user) accesses mapped file problem"
- In reply to: Jennifer Lesher [MSFT]: "Re: Event id 537 flooding security log"
- Next in thread: James Coombes: "Re: Event id 537 flooding security log"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]