Event ID 677 security errors

  • Thread starter Thread starter Mark Koenig
  • Start date Start date
M

Mark Koenig

I have an AD forest with one domain and 8 servers. 4 of
the servers are domain controllers. I get a lot
of "Failure Audit" 677 errors in the event logs. On one of
the errors a ticket request was refused on a machine that
was asking itself for a ticket on 127.0.0.1. It occurs
with both machine and user accounts. I understand that
these errors will happen on occasion but I get too many to
be normal operation.

Source: Security Event ID:677
Service Ticket Request Failed:
User Name: SOMEMACHINE$
User Domain: SOME.AD.DOMAIN
Service Name: krbtgt/SOME.AD.DOMAIN
Ticket Options: 0x2
Failure Code: 0x20
Client Address: 127.0.0.1


I have seen KB articles about passthrough authentication
problems that will give this error when working with NT4
but there is now and never has been NT4 anything
associated with this forest.

Does anyone know what might cause this problem.
 
Hello

Is this a Win2003 domain? If so I believe there is a Kerberos issue that
causes that error on Win2K DCs in a Win2003 domain.
If this fits your situation...you can call Microsoft Product Support and
open a case. You would not be charged for an issue that is resolved w/ a
hot fix.

IBTerry [MSFT]
This posting is provided "AS IS" with no warranties, and confers no rights.
 
Back
Top