AD: event ID 4771 kerberos pre-authentication failed

when troubleshooting AD account lockout issues you can search thru DC security logs for audit failures and event ID 4771. the event details will include a result code which will specify exactly what the issue is.

the most common i’ve seen:
0x12 – client credentials have been revoked (disabled, expired, locked, etc)
0x17 – password has expired
0x18 – pre-authentication was invalid (bad password)

the details will also point out where the authentication failure occurred such as at a DC or Exchange CAS. unfortunately, they will not reveal the originating client device name or IP address. so far i’ve been unable to find a method to identify the client source.

update 1/28/2013:
i have found that if you are having a user account get locked out by access attempts to an Exchange CAS server then you can check the security logs of that CAS server. the logs will reveal the client source IP address. i’ve wondered how to do this for the longest time and it seems so obvious…

ben has also found a microsoft utility called lockoutstatus.exe which can be used to query an account that is locked out and determine the cause of the lockout. using the utility is much quicker than manually searching thru security logs. lockoutstatus is labeled as compatible with windows 2000 and 2003, but still apparently works with 2008.

many more result codes listed here:
http://www.ultimatewindowssecurity.com/securitylog/encyclopedia/event.aspx?eventid=4771

update 12/6/2013:
also check out http://resinblade.net/?p=992 for suggestions on enabling related audit policies.

Posted in: IT by resinblade Comments Off on AD: event ID 4771 kerberos pre-authentication failed

raiser’s edge 7 crash – faulting module name: mshtml.dll

solution ID: BB716412
this RE7.exe crash can be resolved by installing the latest 7.91 patch or by uninstalling internet explorer 9.

Posted in: IT by resinblade No Comments

install uccx agent in windows 7

by default, the UCCX 5.x agent does not want to install on anything above windows XP. if you’re stuck on an older release of UCCX and need to install agents on windows 7 there is a way to force the install.

right-click the MSI file and choose troubleshoot compatibility. the wizard will run and should display “skip version check”, then proceed to start the install. option B is to edit the MSI file itself.

all this info came from:
http://www.lphelps.com/archives/2010/04/installing-cisco-agent-desktop-and-supervisor-on-windows-7/

Posted in: IT by resinblade No Comments

cisco unity to unity connection migration

here’s how we pulled off a successful migration (at least in my opinion):

  • kept vm pilot to old unity system active so old messages could be accessed
  • created a new vm pilot for unity connection
  • disabled MWI extensions on old unity system
  • manual MWI resync on unity connection
  • changed default vm pilot in call manager to the unity connection pilot
  • changed our external vm access number’s transform mask to the unity connection pilot
  • created a forwarded routing rule for our greetings administrator extension in unity connection to route those calls to the greetings administrator conversation

unified messaging (voicemail/email integration) is explained in detail in the “unified messaging guide for cisco unity connection”

Posted in: IT by resinblade No Comments

canoscan: unable to open twain source

some ridiculous crap today…i tried to scan a document on a canon canoscan scanner that i’ve had attached to this PC for 3 years. in those 3 years i’ve never messed with the canon software besides initial install. in those 3 years everything worked fine until today. i received an error message along the lines of “unable to open twain source…” and was unable to scan anything. windows device manager still showed the scanner fine. the only significant changes i’ve made to the machine are windows updates.

since i work in IT i expect stuff to break, but i always get really agitated when some super basic function stops working. the things you take for granted like: opening up your word processor, email client, web browser, file manager…or printing/scanning a document.

luckily, the first google search result led to a well organized and concise blog entry. my thanks to the author jeff.

the solution (heavily summarized) is to edit the system environment variable PATH and add the path “C:\Windows\twain_32\C*”.
for me, the C* subfolder was “CNQL35”, but this will evidently vary based on what model scanner you have.

source:
http://weblogs.asp.net/jeffwids/archive/2009/11/02/canon-scanner-unable-to-open-twain-source.aspx

Posted in: IT by resinblade No Comments

solarwinds virtualization manager

default login is admin/admin

licensing is setup from the Configure or Administration tab.

updates can be applied to the appliance by attaching an update .iso to the vman VM. then go to https:<vman IP address>:5480 to install the update.

update 4/4/2012:
i had an issue getting AD authentication working with virtualization manager recently. the problem was related to an out of date configuration file that still existed after upgrading the appliance to 4.1.
solution offered from support….

ssh into appliance
cd /etc/hyper9
rm hyper9-config-krb5.conf (use sudo)
cp hyper9-config-krb5.conf.default hyper9-config-krb5.conf (use sudo)

 

Posted in: IT by resinblade No Comments

my gaming history

besides playing around with a commodore computer when i was very young, i remember playing games on early (unknown brand) computers when i was in 1st grade. but my first major gaming experience was the original NES. for a very long time that’s all i played and cared about. eventually throw in some apple II’s, IBM PS/2’s, and a tandy here or there. but the majority of my gaming childhood revolved around the NES (i had a gameboy as well). i can’t recall when i moved on to the super nintendo…probably sometime in 1991. and here’s the weird thing…i was such a nintendo fanboy and when i finally got the SNES it didn’t wow me that much. it’s like i was bored of it. partially because kids are fickle, but i think mostly because i started to get into PC gaming in ’92 or ’93. the PC was a whole nother animal and it was more exciting to me at the time. so i’m pretty sure i only had super mario world with my SNES and eventually sold the system.

here’s a snippet that i wrote some time ago about how i felt when i played Doom on the PC for the first time. an experience that truly blew my mind at the time:
“…wolfenstein-3D was pre-loaded on the PC, which too was something that really stunned me as something amazing. at that point i guess the most advanced graphics i had seen were the super nintendo’s. later on, one of my dad’s friends walked me through using PKUNZIP over the phone and i unzipped Doom on a set of disks the person had given me. i’m not sure where he had gotten the disks, but it was a full copy and it seemed months ahead of Doom becoming a buzz word. when i first loaded it i had another of those feelings that this was something really incredible and that i was glad to be in the right place at the right time to witness gaming history.”

at some point during those years my parents bought me a sega genesis. the notion to do so came out of nowhere. i had a lot of fun with it because it was something different to me. so by ’94 i was probably playing genesis and PC games on my 486. then donkey kong country came out for the SNES and i was wow’d by its pseudo 3d graphics. the latest and greatest graphics always caught my attention back then. so then i suddenly wanted an SNES again and eventually got one. this time around i was all in on the SNES again and ended up getting several great games such as final fantasy 3, secret of mana, and ogre battle. by the time i sold my 2nd SNES i got a decent deal of money for it because of all the rare square and enix games i had. i sold the genesis sometime before that.

i rented a nintendo64 from blockbuster when it came out. visually i was impressed by it at the time. however, its graphics definitely did not hold up to the test of time. i had fun playing the n64, but never bought one because i knew that square wasn’t going to release any cartridge games. prior to this i rented the nintendo virtual boy as well. despite being a ridiculous apparatus it had some good games that were fun. the device was impractical though and probably should have been nothing more than a tech demo. approximately around this same time my dad picked up an atari 2600 from a garage sale or flea market. i used to play it occasionally for its novelty value. i didn’t grow up playing the 2600 so it wasn’t near and dear to me.

eventually got a playstation1 sometime after that specifically for playing square games such as final fantasy 7. well i got it and thought it was kind of cool, but then ended up losing interest again like i did the first time when i had an SNES. i think what contributed to my lack of interest was ff7 not being anything like final fantasy 3 was on the SNES. i really liked final fantasy tactics though. anyways, i ended up neglecting the PS1 and eventually gave it away. i focused exclusively on playing PC games after that.

fast forward to 2003 and i was wow’d by playing halo1 at a friend’s house. so i ended up getting the original xbox. then in 2010 i ended up getting a nintendo wii. nowadays i don’t really focus on playing games on any particular platform. smartphone, console, pc…doesn’t matter to me. they all have their strengths and weaknesses. i plan on getting an xbox 360 probably within a year. mostly because i miss playing the halo games.

Posted in: Games by resinblade No Comments

oracle express 10g

the install path in ubuntu is:
/usr/lib/oracle/xe/app/oracle/product/10.2.0/server

to open a web console: http://127.0.0.1:8080/apex

i had problems getting the sql script editor to work for a while. i was convinced i was missing some key configuration because all i would get is a non-working red screen. it turns out the sql script editor just flat-out does not work in newer versions of firefox and chrome. it works fine when accessed from IE7 from windows though.

i’d like to try installing 11g but it looks like the linux version is 64-bit only.

Posted in: IT by resinblade No Comments

detaching a SFP+ cable (10 gigabit)

a couple of weeks ago i became beyond frustrated trying to remove an SFP+ cable. i know i had inserted/removed them plenty times before, but it’s not such a easy task in a cramped area with other cabling in the way. i seriously tried for about 5 minutes straight and was like alright it’s time to google. luckily i found this link on intel’s site: http://www.intel.com/support/network/adapter/10gbe/afdadualserver/sb/CS-029751.htm

so basically the idea is that you pull straight back on the cable release ring (may resemble a ribbon) and that will disengage a retention tab. if that method isn’t working you can find the retention tab with your fingers and manually disengage it.

Posted in: IT by resinblade No Comments

flushing dns cache in linux

this particular method is for suse linux. paths for other distributions may vary.
 /etc/init.d/nscd restart
this will restart the name service cache daemon

Posted in: IT by resinblade No Comments