Re: Ok is this the right group to post this question in?

From: S. Pidgorny (slavickp_at_yahoo.com)
Date: 11/19/03


Date: Wed, 19 Nov 2003 19:41:05 +1100

Have the system administrator to check on the state of the domain's PKI.
He/she might wish to use dsstore tool
(http://support.microsoft.com/?id=313197) to monitor KDC certificate.
Perhaps your Enterprise CA has a problem. Sorry, I never had the problem,
couldn't help.

-- 
Svyatoslav Pidgorny, MVP, MCSE
-= F1 is the key =-
"Ben F. Marshall" <ben.marshall@nospam.swinc.com> wrote in message
news:ec8b7CirDHA.2432@TK2MSFTNGP10.phx.gbl...
> I have posted this question in other groups and the last one told me to
post
> here.
>
> I have a Windows 2003 Server that is showing the following error:
>
> Event ID: 20
> Source: KDC
> Description:  The currently selected KDC certificate was once valid, but
now
> is invalid and no suitable replacement was found. Smartcard logon may not
> function correctly if this problem is not remedied. Have the system
> administrator check on the state of the domain's public key
infrastructure.
> The chain status is in the error data.
> For more information, see Help and Support Center at
> http://go.microsoft.com/fwlink/events.asp.
>
> Does anyone know why this is happening?
>
> Thanks,
>
> -- 
> Ben F. Marshall
> Simpler-Webb Inc.
> http://www.swinc.com/resource/exchange.htm
>
>