Announcement

Collapse
No announcement yet.

Kerberos 5 Error

Collapse
X
  • Filter
  • Time
  • Show
Clear All
new posts

  • Kerberos 5 Error

    Several servers and pc's are recieving Kerberos event ID 5 errors stating:

    The kerberos client received a KRB_AP_ERR_TKT_NYV error from the server %1. This indicates that the ticket used against that server is not yet valid (in relationship to that server time). Contact your system administrator to make sure the client and server times are in sync, and that the KDC in realm %2 is in sync with the KDC in the client realm.

    All the times and timezones are correct for the domain. Any ideas?

  • #2
    Re: Kerberos 5 Error

    Hello,

    As far as I've researched, I couldn't find anything apart from date/time/timezone issue regarding the error you are getting. To narrow down the situation,

    1. Check on PDC, if its configured properly as Authoritative time server. (Check DCDIAG /v for any reported errors)
    2. Check other DC whether they are getting the correct date/time/timezone from PDC. Also check if replication is working correctly.
    3. Check on Client if they are getting the time from PDC or any other DC with correct date/time/timezone.

    Regards,
    Pledge Technologies.
    Best Regards,
    Pledge Technologies

    Comment


    • #3
      Re: Kerberos 5 Error

      Also try Klist tickets comand (Klist.exe from the RK tools) to check that a cached ticket is available and the client name is on the Client field and domain name is in the Server field.
      Caesar's cipher - 3

      ZKHQ BRX HYHQWXDOOB GHFLSKHU WKLV BRX ZLOO UHDOLVH LW ZDV D ZDVWH RI WLPH!

      SFX JNRS FC U6 MNGR

      Comment

      Working...
      X