Kerberos issue november 2021 patching

BCR 41 Reputation points
2021-11-23T16:37:09.437+00:00

After installing November 2021 MS security updates on DC (OS 2016) + installing emergency patch KB5008601 we see a lot Events ID 37:

Event ID 37
The Key Distribution Center (KDC) encountered a ticket that did not contain information about the account that requested the ticket while processing a request for another ticket. This prevented security checks from running and could open security vulnerabilities. See https://go.microsoft.com/fwlink/?linkid=2173051 to learn more.
Ticket PAC constructed by: DC2
Client: DOMAIN\RANDOMSERVER$
Ticket for: krbtgt

How to solve this?

Windows for business | Windows Server | User experience | Other
0 comments No comments
{count} votes

Accepted answer
  1. Leon Laude 86,026 Reputation points
    2021-11-23T16:54:51.297+00:00

    Hi @BCR ,

    There's a KB article for this over here:

    KB5008380—Authentication updates (CVE-2021-42287)
    https://support.microsoft.com/en-gb/topic/kb5008380-authentication-updates-cve-2021-42287-9dafac11-e0d0-4cb8-959a-143bd0201041

    You will need to perform the actions mentioned in the KB article to stop the events.

    ----------

    If the reply was helpful please don't forget to upvote and/or accept as answer, thank you!

    Best regards,
    Leon


0 additional answers

Sort by: Most helpful

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.