Re: Logon Tyoe 8
From: Alex Zhang (v-qiz_at_online.microsoft.com)
Date: 04/28/04
- Next message: Mariano: "Certificates Service: Web Enrollment Pages on another computer"
- Previous message: Robin: "Re: logon as service from command prompt?"
- In reply to: Steven L Umbach: "Re: Logon Tyoe 8"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Date: Wed, 28 Apr 2004 07:37:00 GMT
Hello,
Thank you for posting here.
I noticed that if you manually unregister and reregister using regsvr32
everything will work fine. Therefore, I believe this issue is related to
the custom software package. You should contact the vendor or designers of
the software package for accurate information.
>From the error message, it seems that the IUSR_ADMINISTRATOR3 does not have
local logon rights. So may wish to check the User right assignment in the
local policy for this user right.
In addition, I'd like to provide some related information for you:
275167 PRB: Anonymous Access Fails With an HTTP 401.1 Error After You Join
an
http://support.microsoft.com/?id=275167
326985 HOW TO: Troubleshoot Kerberos-Related Issues in IIS
http://support.microsoft.com/?id=326985
Event ID 534 In The Security Log
http://support.microsoft.com/?id=159930
Auditing User Authentication
http://support.microsoft.com/?id=174073
If you have any questions or concerns, please do not hesitate to let me
know.
Thanks and regards,
Alex Zhang
Microsoft Partner Online Support
Get Secure! - www.microsoft.com/security
=====================================================
When responding to posts, please "Reply to Group" via your newsreader so
that others may learn and benefit from your issue.
=====================================================
This posting is provided "AS IS" with no warranties, and confers no rights.
--------------------
| From: "Steven L Umbach" <n9rou@nospam-comcast.net>
| Newsgroups: microsoft.public.win2000.security
| References: <39C5DDAE-094E-480C-AD3D-5AFB67793CDC@microsoft.com>
| Subject: Re: Logon Tyoe 8
| Lines: 53
| X-Priority: 3
| X-MSMail-Priority: Normal
| X-Newsreader: Microsoft Outlook Express 6.00.2800.1409
| X-MimeOLE: Produced By Microsoft MimeOLE V6.00.2800.1409
| Message-ID: <nOzjc.53789$aQ6.3986643@attbi_s51>
| NNTP-Posting-Host: 67.167.12.160
| X-Complaints-To: abuse@comcast.net
| X-Trace: attbi_s51 1083099411 67.167.12.160 (Tue, 27 Apr 2004 20:56:51
GMT)
| NNTP-Posting-Date: Tue, 27 Apr 2004 20:56:51 GMT
| Organization: Comcast Online
| Date: Tue, 27 Apr 2004 20:56:51 GMT
| Path:
cpmsftngxa10.phx.gbl!TK2MSFTNGXA05.phx.gbl!TK2MSFTNGP08.phx.gbl!newsfeed00.s
ul.t-online.de!t-online.de!border2.nntp.ash.giganews.com!border1.nntp.ash.gi
ganews.com!border2.nntp.sjc.giganews.com!border1.nntp.sjc.giganews.com!nntp.
giganews.com!newsfeed.news2me.com!wn51feed!worldnet.att.net!attbi_s51.POSTED
!not-for-mail
| Xref: cpmsftngxa10.phx.gbl microsoft.public.win2000.security:25977
| X-Tomcat-NG: microsoft.public.win2000.security
|
| See the link below for an explaination of type 8 logon - network clear
text.
| Apparently you are using chap which requires the user right to logon
locally
| ybe?? --- Steve
|
|
|
http://www.microsoft.com/resources/documentation/WindowsServ/2003/datacenter
/proddocs/en-us/Default.asp?url=/resources/documentation/windowsserv/2003/da
tacenter/proddocs/en-us/518.asp
| http://tinyurl.com/2suer --- same link, shorter in case of wrap.
|
| "Cisco Rebelo" <frebelo@millbrookinc.com> wrote in message
| news:39C5DDAE-094E-480C-AD3D-5AFB67793CDC@microsoft.com...
| > I've got a custom software package that we're developing and it uses
iis 6.0 /
| asp.net ver .1433 when I go to install it it registers certain .dll's for
exporting
| features and everything seems to install fine. When I go to try to
export to any of
| our different formats (Access 2000, 97, excel 8, html, comma text etc...)
which uses
| those .dll's register at install I recieve a failure audit in the
security event log
| of the windows 2003 server it's installed on that states:
| >
| > Event Type: Failure Audit
| > Event Source: Security
| > Event Category: Logon/Logoff
| > Event ID: 534
| > Date: 4/27/2004
| > Time: 2:45:22 PM
| > User: NT AUTHORITY\SYSTEM
| > Computer: ADMINISTRATOR3
| > Description:
| >
| > Logon Failure:
| > Reason: The user has not been granted the requested
| > logon type at this machine
| > User Name: IUSR_ADMINISTRATOR3
| > Domain: ADMINISTRATOR3
| > Logon Type: 8
| > Logon Process: Advapi
| > Authentication Package: Negotiate
| > Workstation Name: ADMINISTRATOR3
| > Caller User Name: NETWORK SERVICE
| > Caller Domain: NT AUTHORITY
| > Caller Logon ID: (0x0,0x3E4)
| > Caller Process ID: 1468
| > Transited Services: -
| > Source Network Address: -
| > Source Port: -
| >
| > I've tried to search for this to give the IUSR account the correct
permissions but
| technet/kb or anything else I've doesn't seem to give an explaination of
"LOGON TYPE
| 8" Can someone help.
| >
| > Thanks,
| >
| > Cisco
|
|
|
- Next message: Mariano: "Certificates Service: Web Enrollment Pages on another computer"
- Previous message: Robin: "Re: logon as service from command prompt?"
- In reply to: Steven L Umbach: "Re: Logon Tyoe 8"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Relevant Pages
|