Re: What is prisoner.iana.org



Ian Henderson wrote:
> I have a PC installed with Windows XP SP2, authenticating to a
> network, the Domain Controller for which is running Windows 2000
> Service Pack 4.
> Recently I've noticed that at regular intervals (every hour/90
> minutes), my PC writes the following entry into the System Event Log:
>
> Source: LSASRV
> Category: SPNEGO (Negotiator)
> Type: Warning
> Event ID: 40961
>
> Description: The Security System could not establish a secured
> connection with the server DNS/prisoner.iana.org. NO authentication
> protocol was available.
>
> When I researched Event ID 40961 on the Microsoft website, it seemed
> to indicate that this error would normally appear after promoting a
> Windows 2003 server to Domain Controller. However, I'm not running
> Windows 2K3 anywhere on my network.
>
> To the best of my knowledge, this error does not appear on my (newly
> rebuilt) server, or indeed on my laptop. It seems only to be on this
> one PC. Furthermore, the PC is hanging, for no apparent reason. Although
> it doesn't do this after each time the above error has been
> written into the log, it certainly seems that, now and again, the PC
> hangs/crashes after this entry has been written.
>
> I have the following questions:
>
> 1. What is causing this warning to be written to the system log;
> 2. What can I do to stop this warning appearing in the future;
> 3. Is this warning a notification of something taking place that is
> subsequently causing my machine to hang now and again;
>
> For anyone who's wondering, I've also got the most uptodate version of
> Microsoft AntiSpyware on my PC. Although I know that this doesn't
> catch everything that tries to get through, it certainly grabs a fair
> amount of stuff. Also, I'm fairly sure that my crashing problem is
> not caused by hardware such as memory, because I'm not seeing a BSOD
> when the machine crashes.
>
> I hope that someone can help me. I'm on the point of being about to
> rebuilt my PC in the hope that it will cure the problem. However, I
> don't want to do that if the problem is going to recur as the result
> of something being incorrectly set, either on the PC or on the Server.
>
> TIA

Your DNS server may not have reverse lookup zones implemented. Something is
trying to do a reverse lookup (by IP) of a private address (your network)
and your DNS server is trying to find the authoritative DNS server. As it is
a private IP address your server should be authoritative. Prisoner.iana.org
is a black hole server so the request doesn't propagate all over the net.
Here is a link for how to configure a reverse lookup zone:

http://www.microsoft.com/technet/prodtechnol/windows2000serv/reskit/cnet/cncf_imp_dewg.asp

If you don't have reverse lookup zones set up then try setting them up and
see if the warning goes away. If it doesn't post back as there are other
possible causes. Note: the entry is just a warning. Your network will most
likely work just fine without reverse zones. It will be slightly more
efficient with them.

Kerry


.



Relevant Pages

  • RE: Printing from Win9x clients stops
    ... Open Server Management. ... then right-click the name of the computer running Windows Small Business ... >From the client computer: ... The Select Network Component Type ...
    (microsoft.public.windows.server.sbs)
  • RE: Printing from Win9x clients stops
    ... The printers with 9x drivers on the server appeared automatically in the ... > then right-click the name of the computer running Windows Small Business ... > From the client computer: ... The Select Network Component Type ...
    (microsoft.public.windows.server.sbs)
  • Re: random lockouts
    ... >> I've got a network with several Windows 2000 Servers and ... >> about 150 Windows 98 clients. ... >This problem occurs because the Windows 2000-based server ... >because the session that is reused is against a DFS ...
    (microsoft.public.win2000.security)
  • Questions Relating to Administering Windows 2000 Server
    ... installed the network client on the target computer. ... Sarah has been attempting to install Windows 2000 ... Server for two days. ... Sarah has checked the cables and hard drives. ...
    (microsoft.public.cert.exam.mcse)
  • Questions Relating to Administering Windows 2000 Server
    ... installed the network client on the target computer. ... Sarah has been attempting to install Windows 2000 ... Server for two days. ... Sarah has checked the cables and hard drives. ...
    (microsoft.public.cert.exam.mcse)