Forum Discussion
Protected Users on a brand new active directory (to force Kerberos)
- Dec 26, 2023
Ok, I found out what the problem is.
For some reason email address username @ domain.com shows no domain in the 4625 log, the domain\username shows just domain in the 4625 log and the email username @ domaine.dom shows domain.dom in the field and it works.
I'll have to look into why that is the case.
Hi,
Thanks for the informations !
1- I hooked up the computers to the same network and had the same issue
2- I can connect just fine without the protect user group on both (using RDP)
3- I dont remember any updates happening between friday and monday (both on windows 11 22h2 22621.2861)
4- what events should i be looking for ? (i only checked the 4625 until now)
Also for the first points that I didn't really answer :
1- The AD only has one FQDN
2- All ports should be opened (at least on the network part since one machine can communicate)
3- I have no idea how to check if the AES key is correct or not (?) i can check that as well. Since I am connecting with the same user I was thinking it was good.
Thanks !
Arnaud
Ok, I found out what the problem is.
For some reason email address username @ domain.com shows no domain in the 4625 log, the domain\username shows just domain in the 4625 log and the email username @ domaine.dom shows domain.dom in the field and it works.
I'll have to look into why that is the case.