Forum Discussion
raintrees
Jul 30, 2023Copper Contributor
MSTSC fails to connect with AD account if Win10 remote and over VPN
Background: Server 2012 R2 with domain. SonicWall VPN. Windows 10 Pro host workstations. Remote Desktop connectivity has recently been failing for remote Windows 10 users connecting to their Wi...
MathieuVandenHautte
Aug 02, 2023Iron Contributor
Hi Raintrees,
The Kerberos protocol changed related to CVE-2022-37967. Possibly this can be the cause?
https://support.microsoft.com/en-us/topic/kb5020805-how-to-manage-kerberos-protocol-changes-related-to-cve-2022-37967-997e9acc-67c5-48e1-8d0d-190269bf4efb#timing
- raintreesAug 04, 2023Copper ContributorThank you, I am checking that out. It seems like it very well could be related... From my reading, Kerberos may be denying the logins due to the patching or partial patching of flaws in Microsoft's Kerberos implementation. The trick is to figure out if it applies, as right now, the Key-Distribution log cited is disabled and has no events... I will consider a test environment to explore this over this coming weekend.
Again, Thank you for the pointer!
Mark