The Kerberos client is using a system certificate that is not valid. For device logon, there must be a DNS name. Also, the system certificate could be expired or the wrong one could be selected.

This error message might be recorded in the event logs during logon attempts. To figure out what exactly is wrong with the provided certificates, try executing dcdiag on your domain controller for more in depth error details.

Was this answer helpful?

Please rate & help us to improve our FAQ.

  • No labels