Quantcast
Channel: Security forum
Viewing all articles
Browse latest Browse all 12072

Help understanding EventID 36886 when replacing Domain Controller

$
0
0

Hello,

I replaced a current production 2008 R2 DC with a newly built 2012 DC.  The DCPromo process worked fine, but now I see EventID 36886, Source: Schannel in my System eventlog.  The Description says 'No suitable default server credential exists on this system. This will prevent server applications that expect to make use of the system default credentials from accepting SSL connections. An example of such an application is the directory server. Applications that manage their own credentials, such as the internet information server, are not affected by this.

So Im trying to understand what this means and the potential impact to my system.  We do have a enterprise CA in this domain. 

Is the message saying an app is trying to connect to AD with SSL but no server certificate exists?  Will this cause an error in an app or AD?  Can SSLDiag help me here to diagnose the issue?  Im thinking I have to add a server certificate on this new Server 2012 DC, correct?


Thanks for your help! SdeDot


Viewing all articles
Browse latest Browse all 12072

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>