NETLOGON Event 3210

Андрей Михалевский 2,621 Reputation points
2021-06-30T09:12:38.613+00:00

Hi,

Hello. We have six terminal farm servers. Windows Server 2019, all updates. Today there was a problem with one server, it is not possible to log in:

We can't sign you in with this credential because yor domain is't available. Make sure your device is connected to your organization's network and try again

From logs i see: NETLOGON Event 3210

This computer could not authenticate with DOMAINURL, a Windows domain controller for domain DOMAINNAME, and therefore this computer might deny logon requests. This inability to authenticate might be caused by another computer on the same network using the same name or the password for this computer account is not recognized. If this message appears again, contact your system administrator.

Why did this arise? How to diagnose ?

  • I turn off Ipv6 on all servers, could this affect it ?
Windows Server 2019
Windows Server 2019
A Microsoft server operating system that supports enterprise-level management updated to data storage.
3,458 questions
{count} votes

13 answers

Sort by: Most helpful
  1. Андрей Михалевский 2,621 Reputation points
    2021-07-12T13:19:12.693+00:00

    Hi. I got that error again
    Test-ComputerSecureChannel returns false

    Test-ComputerSecureChannel -Repair: Unable to reset the secure channel password for a domain computer account. An operation failure occurred with the following exception: The server is inoperable.

    Restarting the netlogon service did not help.

    0 comments No comments

  2. Dave Patrick 426.1K Reputation points MVP
    2021-07-12T13:23:41.51+00:00

    You may need to rejoin the domain with this problem member.

    --please don't forget to upvote and Accept as answer if the reply is helpful--

    0 comments No comments

  3. Андрей Михалевский 2,621 Reputation points
    2021-07-12T13:32:36.39+00:00

    It's not a solution. It is repeated every two weeks.

    0 comments No comments

  4. Dave Patrick 426.1K Reputation points MVP
    2021-07-12T13:34:34.717+00:00

    Sounds like something broken in active directory. I'd check the domain health and replication is 100%.

    --please don't forget to upvote and Accept as answer if the reply is helpful--

    0 comments No comments

  5. Андрей Михалевский 2,621 Reputation points
    2021-07-12T13:57:01.553+00:00

    How can I diagnose ? dcdiag /q does not give any errors.

    repadmin /showrepl Shows all successfully

    0 comments No comments