Networking Forums

Networking Forums > Computer Networking > Windows Networking > System detected a possible attempt to compromise security

Reply
Thread Tools Display Modes

System detected a possible attempt to compromise security

 
 
jsmith609@yahoo.com
Guest
Posts: n/a

 
      09-21-2006, 08:11 PM
I have a remote lan with 3 XP pro computers that are part of a Win2003
Active Directory (in the main location). Most of the time this remote
location is connected via a VPN connection and all is good.

One of the XP machines has a share that the other 2 XP machines access
for a database app (inventory / invoices ...). When the VPN connection
is up, there is no problem for the 2 machines to access the share on
the 3rd that holds the database. However, the VPN goes down from time
to time and when it does the 2 machines cannot access the share on the
3rd. If I open a cmd window and enter dir \\computer1\share I get the
error:

The system detected a possible attempt to compromise security. Please
ensure that you can contact the server that authenticated you.

All 3 XP machines are part of the same domain and I am logging in as a
valid domain user using cached credientials. Why can't the machine
that has the share allow another machine to access its share using
cached credientials?

Any help would be great.

- John

 
Reply With Quote
 
 
 
 
Phillip Windell
Guest
Posts: n/a

 
      09-21-2006, 09:09 PM
<(E-Mail Removed)> wrote in message
news:(E-Mail Removed) oups.com...
> All 3 XP machines are part of the same domain and I am logging in as a
> valid domain user using cached credientials. Why can't the machine
> that has the share allow another machine to access its share using
> cached credientials?


It doesn't validate off of cached credentials because those are not a valid
authenticator. It has to validate the credentials presented to it with the
Domain Controller.

--
Phillip Windell [MCP, MVP, CCNA]
www.wandtv.com


 
Reply With Quote
 
jsmith609@yahoo.com
Guest
Posts: n/a

 
      09-22-2006, 01:23 PM
Is there any way to force it to validate off the cached credentials? I
need all 3 machines to be able to run the database app regardless of
the VPN connection.

Thanks.

 
Reply With Quote
 
Phillip Windell
Guest
Posts: n/a

 
      09-22-2006, 11:51 PM
<(E-Mail Removed)> wrote in message
news:(E-Mail Removed) ups.com...
> Is there any way to force it to validate off the cached credentials? I
> need all 3 machines to be able to run the database app regardless of
> the VPN connection.


No.
That is why a DC is required at every remote site. That is what the "Active
Directory Sites Object" is there for,...it regulates the replication between
DCs over slow & undependable WAN links and it also always makes sure the
users log in with their own local DC and not one somewhere else across the
WAN. The local DC keeps the Sites "alive" if the link goes down,...then
when the link comes up the AD Sites Object "catches up" the Replication so
everything is uptodate.


--
Phillip Windell [MCP, MVP, CCNA]
www.wandtv.com


 
Reply With Quote
 
 
 
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
Security Compromise Somchai Windows Networking 1 08-05-2007 03:28 PM
Possible compromise of Windows Server 2003 security risk & unknown users Chris Windows Networking 2 12-07-2005 08:23 PM
Open SSID detected as Security-enabled Richard Poon Wireless Networks 2 07-25-2005 07:44 PM
AP can be detected - can wireless card user be detected also? Bill Wireless Internet 3 10-07-2004 06:55 AM
Sun Java Desktop System - eth1 wireless detected, but not active Thommes Thomassen Linux Networking 3 02-10-2004 04:47 PM



1 2 3 4 5 6 7 8 9 10 11