Re: Ok is this the right group to post this question in?
From: Krish Shenoy[MSFT] (kshenoy_at_online.microsoft.com)
Date: 12/11/03
- Previous message: Krish Shenoy[MSFT]: "Re: Required Root CAs and CTLs"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Date: Wed, 10 Dec 2003 18:01:39 -0800
It is highly likely the CRL issued by the CA that issued the KDC certificate
has expired
Run certutil -verify <KDCcertfile>
to check for the reason for the failure
"Ben F. Marshall" <ben.marshall@nospam.swinc.com> wrote in message
news:ec8b7CirDHA.2432@TK2MSFTNGP10.phx.gbl...
> I have posted this question in other groups and the last one told me to
post
> here.
>
> I have a Windows 2003 Server that is showing the following error:
>
> Event ID: 20
> Source: KDC
> Description: The currently selected KDC certificate was once valid, but
now
> is invalid and no suitable replacement was found. Smartcard logon may not
> function correctly if this problem is not remedied. Have the system
> administrator check on the state of the domain's public key
infrastructure.
> The chain status is in the error data.
> For more information, see Help and Support Center at
> http://go.microsoft.com/fwlink/events.asp.
>
> Does anyone know why this is happening?
>
> Thanks,
>
> --
> Ben F. Marshall
> Simpler-Webb Inc.
> http://www.swinc.com/resource/exchange.htm
>
>
- Previous message: Krish Shenoy[MSFT]: "Re: Required Root CAs and CTLs"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]