Hi everybody,
I have a domain running over a windows server 2003 standard edition sp1 +
all needed fixes as a dc also this server runs dns and dhcp.
We where so happy until we nedeed to setup a smartcard logon.
In the dc i had installed a root enterprise CA for issuing certificates for
the Smartcard logon
But when i finished this in the event viewer appears thiis:
KDC event id 20
The currently selected KDC certificate was once valid, but now is invalid
and no suitable replacement was found. Smartcard logon may not function
correctly if this problem is not remedied. Have the system administrator
check on the state of the domain''s public key infrastructure. The chain
status is in the error data.
And when turned on the kerbero´s debug mode
0xd KDC_ERR_BADOPTION
Anyone has any idea?
Please
Best regards
PD Sorry about my english!!!
Bye
|