Comprehensive list of SPNs on a Domain Controller
where can find a complete list of spns dc should have registered, may when installed first time? list change based on ffl or dfl of os on dc? dcs manage own spns automatically? if yes, how rewrite spns on thir comp acct to keep them correct?
is "ldap/dc1.domain.com/domain.com@domain.com" correct , must have spn? because (only) exchange 2010 servers throwing many errors above spn saying - security system not establish secured connection server ldap/dc1.domain.com/domain.com@domain.com. is exch2010 specific behavior spn? no other applications seemingly using this particular spn. have reviewed many dcs' spns in many different clients we support, none of them have particular spn registered.
thanks in advance.
hi bachignt,
based on research, cause of event may be that there was no reverse lookup zone configured on internal dns server. if so, please follow steps below add reverse lookup zone:
- in control panel, double-click administrative tools , double-click dns .
- optionally, if server want add reverse lookup zone not appear in list, right-click dns , click connect computer , , follow instructions add desired server.
- to display zones, click server name.
- right-click the reverse lookup zones folder, , click new zone . zone configuration wizard appears.
regards,
lany zhang
Windows Server > Directory Services
Comments
Post a Comment