Share via

Windows 2025 Cluster Service won't start with Event ID 7024

Andrew Henderson 0 Reputation points
2025-08-06T08:56:45.1333333+00:00

Hello,

I have a Windows 2025 Datacenter server and have successfully installed the feature, Failover Cluster, but after installing the Failover Cluster feature and rebooting, the cluster service cannot start.

We have applied CIS Level 1 hardening, which disables "Allow Custom SSPs and APs to be loaded into LSASS". This is a sensible security measure and I would prefer not to enable it. This is a setting that blocks custom Security Support Providers (SSPs) and Authentication Packages (APs) can prevent the Cluster service from loading its necessary authentication module, "CLUSAUTHMGR.DLL", resulting in Event ID 7024.

Is there a solution to this? Currently we cannot use 2025 for SQL Clustering with base level security recommendations.

Thanks,
Andrew

Windows for business | Windows Server | Devices and deployment | Install Windows updates, features, or roles
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. Harry Phan 15,935 Reputation points Independent Advisor
    2025-08-19T08:06:46.77+00:00

    Dear Andrew,

    Based on your description, the issue appears to be directly related to the CIS Level 1 hardening policy that disables the setting: “Allow Custom SSPs and APs to be loaded into LSASS.”

    To restore Cluster service functionality while maintaining security posture, we suggest the following:

    Temporarily enable the setting “Allow Custom SSPs and APs to be loaded into LSASS” during cluster formation and initial configuration.

    Once the cluster is successfully formed and validated, reapply the CIS policy and monitor service behavior. In some environments, the service may continue to operate normally post-formation, though this is not guaranteed.

    Alternatively, consider creating a policy exception for CLUSAUTHMGR.DLL if feasible within your security governance framework.

    If the above response helps answer your question, remember to "Accept Answer" so that others in the community facing similar issues can easily find the solution. Your contribution is highly appreciated. Best regards,

    Harry Phan


Your answer

Answers can be marked as 'Accepted' by the question author and 'Recommended' by moderators, which helps users know the answer solved the author's problem.