Quantcast
Channel: Directory Services forum
Viewing all articles
Browse latest Browse all 31638

SPN duplicate name Error on DC

$
0
0
Good day!
I have one problem, which repeating regularly. That error write into system log on both domain controllers more 1000 time in month:

The KDC encountered duplicate names while processing a Kerberos authentication request. The duplicate name is cifs/COmputername (of type DS_SERVICE_PRINCIPAL_NAME). This may result in authentication failures or downgrades to NTLM. In order to prevent this from occuring remove the duplicate entries for cifs/COmputername in Active Directory.
Event Number: 11

Service name for SPN may be various (cifs, host, MSSQL etc.).
On this page  http://technet.microsoft.com/en-us/library/cc733945(v=ws.10).aspx  recommended remove duplicated SPN, but duplicated SPN is absent in domain (command "setspn -x" displays no records). Duplicated SPN is present in forest (was migration computers from one domain to another), but that computers names not listed in errors with EvetntID 11.
Diagnostic utility dcdiag do not displays errors for both domain controllers.

Has anyone encountered this problem before?
Any idea to solve it?

Viewing all articles
Browse latest Browse all 31638

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>