Comprehensive list of SPNs on a Domain Controller


 where can find a complete list of spns dc should have registered, may when installed first time? list change based on ffl or dfl of os on dc? dcs manage own spns automatically? if yes, how rewrite spns on thir comp acct to keep them correct?

 is "ldap/dc1.domain.com/domain.com@domain.com" correct , must have spn? because (only) exchange 2010 servers throwing many errors above spn saying - security system not establish secured connection server ldap/dc1.domain.com/domain.com@domain.com is exch2010 specific behavior spn? no other applications seemingly using this particular spn. have reviewed many dcs' spns in many different clients we support, none of them have particular spn registered.

thanks in advance.

hi bachignt,

based on research, cause of event may be that there was no reverse lookup zone configured on internal dns server. if so, please follow steps below add  reverse lookup zone:

  1. in control panel, double-click  administrative tools , double-click  dns .
  2. optionally, if server want add reverse lookup zone not appear in list, right-click  dns , click  connect computer , , follow instructions add desired server.
  3. to display zones, click server name.
  4. right-click the  reverse lookup zones folder, , click  new zone . zone configuration wizard appears.

regards,

lany zhang



Windows Server  >  Directory Services



Comments

Popular posts from this blog

some help on Event 540

WMI Repository 4GB limit - Win 2003 Ent Question

Event ID 1302 (error 1307) DFS replication service encountered an error while writing to the debug log file