Event Id | 8203 |
Source | Microsoft-Windows-IDMU-Psync |
Description | Password propagation failed. Encryption key mismatch or packet error for the user on the specified host. %ruser = %1 %rhost = %2 |
Event Information | According to Microsoft : Cause : This event is logged when Password propagation failed. Resolution : Correct encryption key mismatch Password propagation failed. An encryption key mismatch or packet error occurred for the specified user on the specified host. This error typically originates in the UNIX environment. Verify that the user account exists on the UNIX-based computer. Observe the following encryption key matching requirements. The password can be successfully decrypted only if Password Synchronization and the SSOD or PAM module use the same encryption key to encrypt and decrypt the password. Before installing the SSOD on any UNIX computer, you must first set the default encryption key. You must then specify the same key in the sso.conf file when you install the SSOD on each UNIX host. This will ensure that Password Synchronization and the SSOD on the UNIX hosts will use the same encryption key. Setting the default encryption key Important This setting affects the default encryption key for UNIX hosts when they are added for synchronization, as well as the port used for UNIX-to-Windows synchronization. If you change this setting, you must edit the SYNC_HOSTS entry in the /etc/sso.conf file to specify the same encryption key on UNIX hosts that are configured for UNIX-to-Windows password synchronization with the computer on which you complete this procedure. To set the default encryption key:
To make sure that encryption keys match in sso.conf:
Retry Windows to UNIX password synchronization for any failed user password change attempts to verify that Password Synchronization is operating normally. Password Synchronization is operating normally when password synchronization succeeds and is operating under warning conditions if synchronization fails for some passwords but succeeds for others. If password synchronization succeeds for some passwords but fails for others, Windows to UNIX Password Synchronization Configuration is likely fully operational, but there might be account- or computer-specific configuration problems preventing password changes from being synchronized on UNIX-based hosts. |
Reference Links | Event ID 8203 from Microsoft-Windows-IDMU-Psync |
Catch threats immediately
We work side-by-side with you to rapidly detect cyberthreats
and thwart attacks before they cause damage.