!!! Overview [{$pagename}] (DIRLOG_HAVE_REJECTED_UNSIGNED_CLIENTS) is an [Windows Security Log Event] within the [Microsoft Windows] [Logging] for [LDAPServerIntegrity] [{$pagename}] indicates: * This [Domain Controller] is currently configured to request and reject clients __NOT USING __[LDAPServerIntegrity] for [Bind Request]. * The number of [Bind Request] this [Domain Controller] REJECTED from [DUA] within the past 24 hours __without__ [LDAPServerIntegrity] Setting for the "LDAP Interface Events" event logging category to level 2 or higher allows viewing: * Number of simple binds performed without SSL/TLS: "Value" * Number of Negotiate/Kerberos/NTLM/Digest binds performed without signing: "Value" !! More Information There might be more information for this subject on one of the following: [{ReferringPagesPlugin before='*' after='\n' }] ---- * [#1] - [Event ID 2888 — LDAP signing|https://docs.microsoft.com/en-us/previous-versions/windows/it-pro/windows-server-2008-R2-and-2008/dd941863%28v%3dws.10%29|target='_blank'] - based on information obtained 2020-01-18 * [#2] - [LDAP signing|https://docs.microsoft.com/en-us/previous-versions/windows/it-pro/windows-server-2008-R2-and-2008/dd941832(v=ws.10)?redirectedfrom=MSDN|target='_blank'] - based on information obtained 2020-01-18