Only First Key Distribution Center in a Configured Kerberos Realm Is Used (288337)
The information in this article applies to:
- Microsoft Windows 2000 Server
- Microsoft Windows 2000 Advanced Server
- Microsoft Windows 2000 Professional
This article was previously published under Q288337 SYMPTOMS
When multiple, replicated non-Windows Kerberos Key Distribution Centers (KDCs) exist, Windows 2000 will only use the first KDC as it is listed in the registry. In other words, Windows 2000 will always use one KDC for a Kerberos realm even if more than one KDC exists. This can cause server or network overloading.
RESOLUTIONTo resolve this problem, obtain the latest service pack for Windows 2000. For additional information, click the following article number to view the article in the
Microsoft Knowledge Base:
260910 How to Obtain the Latest Windows 2000 Service Pack
The English version of this fix should have the following file attributes or later:
Date Time Version Size File name
--------------------------------------------------------
02/08/2001 12:44p 5.0.2195.2867 360,208 Advapi32.dll
02/08/2001 12:43p 5.0.2195.2867 521,488 Instlsa5.dll
02/08/2001 12:44p 5.0.2195.2862 140,560 Kdcsvc.dll
01/29/2001 06:19p 5.0.2195.2862 198,928 Kerberos.dll
01/26/2001 07:15p 5.0.2195.2862 69,456 Ksecdd.sys
02/08/2001 12:44p 5.0.2195.2867 503,568 Lsasrv.dll
01/30/2001 06:04p 5.0.2195.2867 33,552 Lsass.exe
02/08/2001 12:44p 5.0.2195.2864 910,608 Ntdsa.dll
02/08/2001 12:44p 5.0.2195.2864 362,256 Samsrv.dll
STATUSMicrosoft has confirmed that this is a problem in the Microsoft products that are listed at the beginning of this article. This problem was first corrected in Windows 2000 Service Pack 2.
Modification Type: | Minor | Last Reviewed: | 9/26/2005 |
---|
Keywords: | kbHotfixServer kbQFE kbbug kbenv kbfix kbnetwork kbQFE kbWin2000PreSP2Fix KB288337 |
---|
|