|
|
|
#1 |
|
Messages: n/a
Hébergeur: |
We have a standalone (non AD member) server that serves as our public
DNS server (DNS1) and hold the primary copy of our DNS zone. Internally our two Domain controllers (srv-1, srv-2) serve as our private DNS server and are authoritative both for our AD domain and the public domain (the pull a copy from the public server). For the last 10 days or so I've been seeing the error pasted below in the system log of our primary DNS server. Please Advise. Thanks Travis Event Type: Warning Event Source: LSASRV Event Category: SPNEGO (Negotiator) Event ID: 40960 Date: 10/20/2006 Time: 4:52:45 PM User: N/A Computer: DNS1 Description: The Security System detected an authentication error for the server DNS/srv-2.localdomain. The failure code from authentication protocol Kerberos was "There are currently no logon servers available to service the logon request. (0xc000005e)". For more information, see and Support Center at http://go.microsoft.com/fwlink/events.asp. Data: 0000: 5e 00 00 c0 ^..À |
|
|
|
#2 |
|
Messages: n/a
Hébergeur: |
Hi
Generally, these errors can be safely ignored. These errors occur because the DNS server doesn't have a Reverse Lookup Zone Configured. Although Active Directory doesn't need Reverse Lookup Zone to function, the Windows 2003 and XP tries to make a secure PTR registration, and because the Reverse Lookup Zone isn't configured, the OS tries to make a secure PTR registration at the External DNS that is Authoritative over the reverse lookup of the IP on the machine's local interface. If it's a private address it will say cannot establish a secured connection with the server prisoner.iana.org. Also, nslookup will report "Can't find server name for address ... You can either Create a Reverse Lookup Zone or Disable Reverse Lookup Zone Registration -- I hope that the information above s you Good Luck Jorge Silva MCSA Systems Administrator "Travis Montgomery" <tmontgomery_removethis_@nccu.edu> wrote in message news:%23aaibDJ9GHA.2288@TK2MSFTNGP05.phx.gbl... > We have a standalone (non AD member) server that serves as our public DNS > server (DNS1) and hold the primary copy of our DNS zone. Internally our > two Domain controllers (srv-1, srv-2) serve as our private DNS server and > are authoritative both for our AD domain and the public domain (the pull a > copy from the public server). For the last 10 days or so I've been seeing > the error pasted below in the system log of our primary DNS server. > Please Advise. > > Thanks > > Travis > > Event Type: Warning > Event Source: LSASRV > Event Category: SPNEGO (Negotiator) > Event ID: 40960 > Date: 10/20/2006 > Time: 4:52:45 PM > User: N/A > Computer: DNS1 > Description: > The Security System detected an authentication error for the server > DNS/srv-2.localdomain. The failure code from authentication protocol > Kerberos was "There are currently no logon servers available to service > the logon request. > (0xc000005e)". > > For more information, see and Support Center at > http://go.microsoft.com/fwlink/events.asp. > Data: > 0000: 5e 00 00 c0 ^..À |
|
![]() |
| Outils de la discussion | |
|
|