RE: Autoenrollment Event 13 Error 0x80040154



Hi Bill,

Thanks for posting here.

From the description, I understand the issue is that you get an error in
the application log regarding automatic certificate enrollment. If I am off
base, please don't hesitate to let me know.

the swing migration is not supported in this newsgroup, you had better
contact http://www.sbsmigration.com/ website for further efficient
assistance.

For you convenience,I would like to provide the following resolution for
your reference.

I.open the certification authority MMC, and start the service

II.restart the KDC services

III.If issue persists,please do the following:

Please add the correct permissions to the ?\Documents and Settings\All
Users\Application Data\Microsoft\Crypto\RSA? folder. add full control for
System and Administrators (found that System was not listed for access and
Administrators was listed but with no access granted) and ran the following
commands:

certutil -setreg SetupStatus -SETUP_DCOM_SECURITY_UPDATED_FLAG
net stop certsvc
net start certsvc

IV.the problem can be caused by insufficient permissions. So I suggest you
check the following for the current time:

1. Please check to ensure that a new security group, CERTSVC_DCOM_ACCESS,
has been created after applied the SP1 on the SBS server (If it has SP1
applied).

2. Please add the "Domain Users", "Domain Computers", "Domain Controllers"
groups and the to the new CERTSVC_DCOM_ACCESS security group.

3. Then, we can have Certificate Services update the DCOM security settings
by running the following commands:

certutil -setreg SetupStatus -SETUP_DCOM_SECURITY_UPDATED_FLAG
net stop certsvc
net start certsvc


more information about your issue,Please refer to other's comment.

http://www.eventid.net/display.asp?eventid=13&eventno=2719&source=AutoEnroll
ment&phase=1



Have a nice day!

Best regards,

Jacky Luo (MSFT)
Microsoft CSS Online Newsgroup Support

Get Secure! - www.microsoft.com/security
====================================================
PLEASE NOTE: The partner managed newsgroups are provided to
assist with break/fix issues and simple how to questions.
We also love to hear your product feedback! Let us know what you think by
posting

from the web interface: Partner Feedback
from your newsreader: microsoft.private.directaccess.partnerfeedback.

We look forward to hearing from you!
====================================================
When responding to posts, please "Reply to Group" via your newsreader
so that others may learn and benefit from this issue.
====================================================
This posting is provided "AS IS" with no warranties, and confers no rights.
====================================================

.



Relevant Pages

  • Re: Autoenrollment Event 13 Error 0x80040154
    ... I know swing migration is not supported here, but I thought it fair to ... net start certsvc ... Please check to ensure that a new security group, CERTSVC_DCOM_ACCESS, ... Microsoft CSS Online Newsgroup Support ...
    (microsoft.public.windows.server.sbs)
  • RE: netsh error - 1312
    ... \par Running the example from the article I was able to create the certificate ... \par Scott Norberg ... \par> Microsoft MSDN Online Support Lead ...
    (microsoft.public.dotnet.framework.webservices)
  • Re: American Currency
    ... but a leaning to the left does not support that there is one. ... but that does not create evidence for the claim Obama was born ... And this will all depend on IF the supreme court will even try ... And you'll notice that he did provide his birth certificate too. ...
    (comp.sys.mac.advocacy)
  • RE: OWA/Mobile not working + 1054 and 506 errors
    ... Regarding OMA in SBS 2003 server, ... untrusted certificate, or that simply do not support adding certificates at ...
    (microsoft.public.windows.server.sbs)
  • RE: Does OpenSSH support X.509 Certificate format?
    ... debug1: sshd version OpenSSH_3.5p1 ... debug1: private host key: #0 type 1 RSA ... Does OpenSSH support X.509 Certificate format? ...
    (SSH)