Re: Certificate and Kerberos event errors 0xc1001014 & 0xc0000071

Tech-Archive recommends: Fix windows errors by optimizing your registry



Hi

Did you created a Reverse Lookup Dns Zone?

If the errors only occur after the server has been rebooted, it is likely
that a service is attempting to authenticate before the directory service is
available.

http://support.microsoft.com/default.aspx?scid=kb;en-us;823712&sd=ee
http://support.microsoft.com/default.aspx?scid=kb;en-us;824217&sd=ee

To troubleshoot Kerberos errors:

Kerberos and Authentication Troubleshooting
http://www.windowsitlibrary.com/Content/617/06/7.html
Troubleshooting Kerberos Errors
http://www.microsoft.com/technet/prodtechnol/windowsserver2003/technologies/security/tkerberr.mspx#EXIAG
Description of Common Kerberos-Related Errors in Windows 2000
http://support.microsoft.com/?id=230476




--
I hop that helps

Good Luck
Jorge Silva
MCSA
Systems Administrator





"Amit" <Amit@xxxxxxxxxxxxxxxxxxxxxxxxx> wrote in message
news:34FFF04E-D6C6-4C12-BDF4-3A50384131EA@xxxxxxxxxxxxxxxx
One of our DC Exchange severs is giving me the following errors below,
which
I think are all related:

Event Type: Error
Event Source: Live Communications Server
Event Category: (1001)
Event ID: 14359
Date: 17/05/2006
Time: 14:59:31
User: N/A
Computer: DC1
Description:
Unable to use the default outgoing certificate. Error 0xc1001014 (The
certificate configured for secure transport was not found.). The
certificate
may have been deleted.


This is also followed with in the System Events:


Event Type: Warning
Event Source: LSASRV
Event Category: SPNEGO (Negotiator)
Event ID: 40960
Date: 17/05/2006
Time: 15:08:44
User: N/A
Computer: DC1
Description:
The Security System detected an authentication error for the server
ldap/DC2.domain2.com. The failure code from authentication protocol
Kerberos
was "The user account's password has expired.
(0xc0000071)"


I don't know if these are also related to the problems I am currently
having
with the DFS as I am attempting to replicate with DC2 which is in another
domain, which is also failing, with the error DS: WARN - Error getting
topology for replica root. I am just unsure if all of these are related.

Any suggestions would be helpful.

Thanks,

Amit



.



Relevant Pages

  • Re: Need help configuring Wireless Connection profile
    ... Windows authentication for all users,4129,LRG\ryanv,4149,Wireless ... Vaillancourt,4155,1,4154,Use Windows authentication for all ... SMALL BUSINESS SERVER: ... STEP #1 Install Certificate Services ...
    (microsoft.public.windowsxp.general)
  • Re: Need help configuring Wireless Connection profile
    ... "point" the info of the Radius authentication to your current Radius server. ... SMALL BUSINESS SERVER: ... STEP #1 Install Certificate Services ...
    (microsoft.public.windowsxp.general)
  • Re: OWA 2003 w/ Smart Card Authentication.
    ... Exchange 2003 server via ActivSync. ... the IIS certificate. ... Whether or not authentication will succeed is completely dictated by ... Server's SSL certificate must be configured on root of v-server via ...
    (microsoft.public.exchange.connectivity)
  • Need help configuring Wireless Connection profile
    ... I have an SBS 2003 server and a Server 2003 member server set up using RADIUS ... Windows authentication for all users,4129,LRG\ryanv,4149,Wireless WPA2 PEAP ... Certificate Services ...
    (microsoft.public.windowsxp.general)
  • Re: Need help configuring Wireless Connection profile
    ... "point" the info of the Radius authentication to your current Radius server. ... SMALL BUSINESS SERVER: ... STEP #1 Install Certificate Services ...
    (microsoft.public.windowsxp.general)