Question

  • Creator
    Topic
  • #2225669

    Event Id 40961 LsaSrv & 1030 UserEnv logged every 2 hrs

    Locked

    by sfuerth ·

    One of our client PCs (XP Pro) logs the following errors every 2 hours:

    Event Type: Warning
    Event Source: LSASRV
    Event Category: SPNEGO (Negotiator)
    Event ID: 40961
    Date: 8/8/2007
    Time: 3:45:08 PM
    User: N/A
    Computer: [clientpc]
    Description:
    The Security System could not establish a secured connection with the server ldap/server.domain@domain/domain. No authentication protocol was available.

    and

    Event Type: Error
    Event Source: Userenv
    Event Category: None
    Event ID: 1030
    Date: 8/8/2007
    Time: 3:45:08 PM
    User: [domain]\[user]
    Computer: [clientpc]
    Description:
    Windows cannot query for the list of Group Policy objects. A message that describes the reason for this was previously logged by the policy engine.

    In previous posts related to 40961/1030 people note that it is looking to blackhole.iana.org and this is usually the result of a reverse lookup zone not being defined in local dns. However, I have a reverse lookup zone and the client PC in question does have a PTR record inside said lookup zone.

    Do you think I should just remove the client PC from the domain and re-add it? Can you suggest anything else I should investigate?

    Thanks!!

All Answers

Viewing 1 reply thread