This page (revision-1) was last changed on 29-Nov-2024 16:16 by UnknownAuthor

Only authorized users are allowed to rename pages.

Only authorized users are allowed to delete pages.

Page revision history

Version Date Modified Size Author Changes ... Change note

Page References

Incoming links Outgoing links

Version management

Difference between version and

At line 1 added 37 lines
!!! Overview
[{$pagename}] (DIRLOG_HAVE_REJECTED_UNSIGNED_CLIENTS) is an [Windows Security Log Event] within the [Microsoft Windows] [Logging] for [LDAPServerIntegrity]
[{$pagename}] indicates:
* This [Domain Controller] is currently configured to request and reject clients __NOT USING __[LDAPServerIntegrity] for [Bind Request].
* The number of [Bind Request] this [Domain Controller] REJECTED from [DUA] within the past 24 hours __without__ [LDAPServerIntegrity]
Setting for the "LDAP Interface Events" event logging category to level 2 or higher allows viewing:
* Number of simple binds performed without SSL/TLS: "Value"
* Number of Negotiate/Kerberos/NTLM/Digest binds performed without signing: "Value"
!! More Information
There might be more information for this subject on one of the following:
[{ReferringPagesPlugin before='*' after='\n' }]
----
* [#1] - [Event ID 2888 — LDAP signing|https://docs.microsoft.com/en-us/previous-versions/windows/it-pro/windows-server-2008-R2-and-2008/dd941863%28v%3dws.10%29|target='_blank'] - based on information obtained 2020-01-18
* [#2] - [LDAP signing|https://docs.microsoft.com/en-us/previous-versions/windows/it-pro/windows-server-2008-R2-and-2008/dd941832(v=ws.10)?redirectedfrom=MSDN|target='_blank'] - based on information obtained 2020-01-18