Forum Discussion

aaaaaaaanonymous's avatar
aaaaaaaanonymous
Copper Contributor
Jun 16, 2021

Why does a DC still tries to use an old gMSA that is no longer is configured in the portal?

Why does a DC still tries to use an old gMSA that is no longer is configured in the portal?

I initially use account GMSA2 and configure it the portal, a Sensor was installed..now I have added GMSA1 to the portal and remove GMSA2 from the portal.

It appears the DCs are using GMSA1 now and connected fine to the portal but they do still gives the error about GMSA2.  It has been a few weeks passed and still the DC keeps coming up with error "An attempt to fetch the password of a group managed service account failed" for GMSA2.

Is GMSA2 cached or something? How do I stop this error from occuring?

4 Replies

  • The credentials are cached only for a few minutes...
    Did you make sure to delete the old credentials from the portal? they do not appear there any more ?
    If you stop both sensor services on the machine, does the old credentials stopped being used (to make sure it's actually the sensor that is using them and not something else...)
    • aaaaaaaanonymous's avatar
      aaaaaaaanonymous
      Copper Contributor
      Yep..remove from portal, delete from Active Directory.
      Perhaps I need to stop the sensor or restart it and see.
      • EliOfek's avatar
        EliOfek
        Icon for Microsoft rankMicrosoft
        There should not be a need to restart the sensor for it to refresh, but I would simply stop it for a few hours to see if authentications stop at that time. if they are not, it's not MDI related.
        IS this sensor reported healthy in the portal ?

Resources