Monitor unlimited number of servers
Filter log events
Create email and web-based reports

Direct access to Microsoft articles
Customized keywords for major search engines
Access to premium content

Kerberos Error Codes

By EventID.Net

Kerberos Error Codes as per RFC 4120

Symbolic NameHex Error CodeDescription
KDC_ERR_NONE0No error
KDC_ERR_NAME_EXP1Client's entry in database has expired
KDC_ERR_SERVICE_EXP2Server's entry in database has expired
KDC_ERR_BAD_PVNO3Requested protocol version number not supported
KDC_ERR_C_OLD_MAST_KVNO4Client's key encrypted in old master key
KDC_ERR_S_OLD_MAST_KVNO5Server's key encrypted in old master key
KDC_ERR_C_PRINCIPAL_UNKNOWN6Client not found in Kerberos database
KDC_ERR_S_PRINCIPAL_UNKNOWN7Server not found in Kerberos database
KDC_ERR_PRINCIPAL_NOT_UNIQUE8Multiple principal entries in database
KDC_ERR_NULL_KEY9The client or server has a null key
KDC_ERR_CANNOT_POSTDATE10Ticket not eligible for postdating
KDC_ERR_NEVER_VALID11Requested starttime is later than end time
KDC_ERR_POLICY12KDC policy rejects request
KDC_ERR_BADOPTION13KDC cannot accommodate requested option
KDC_ERR_ETYPE_NOSUPP14KDC has no support for encryption type
KDC_ERR_SUMTYPE_NOSUPP15KDC has no support for checksum type
KDC_ERR_PADATA_TYPE_NOSUPP16KDC has no support for padata type
KDC_ERR_TRTYPE_NOSUPP17KDC has no support for transited type
KDC_ERR_CLIENT_REVOKED18Clients credentials have been revoked
KDC_ERR_SERVICE_REVOKED19Credentials for server have been revoked
KDC_ERR_TGT_REVOKED20TGT has been revoked
KDC_ERR_CLIENT_NOTYET21Client not yet valid; try again later
KDC_ERR_SERVICE_NOTYET22Server not yet valid; try again later
KDC_ERR_KEY_EXPIRED23Password has expired; change password to reset
KDC_ERR_PREAUTH_FAILED24Pre-authentication information was invalid
KDC_ERR_PREAUTH_REQUIRED25Additional pre-authentication required
KDC_ERR_SERVER_NOMATCH26Requested server and ticket don't match
KDC_ERR_MUST_USE_USER2USER27Server principal valid for user2user only
KDC_ERR_PATH_NOT_ACCEPTED28KDC Policy rejects transited path
KDC_ERR_SVC_UNAVAILABLE29A service is not available
KRB_AP_ERR_BAD_INTEGRITY31Integrity check on decrypted field failed
KRB_AP_ERR_TKT_EXPIRED32Ticket expired
KRB_AP_ERR_TKT_NYV33Ticket not yet valid
KRB_AP_ERR_REPEAT34Request is a replay
KRB_AP_ERR_NOT_US35The ticket isn't for us
KRB_AP_ERR_BADMATCH36Ticket and authenticator don't match
KRB_AP_ERR_SKEW37Clock skew too great
KRB_AP_ERR_BADADDR38Incorrect net address
KRB_AP_ERR_BADVERSION39Protocol version mismatch
KRB_AP_ERR_MSG_TYPE40Invalid msg type
KRB_AP_ERR_MODIFIED41Message stream modified
KRB_AP_ERR_BADORDER42Message out of order
KRB_AP_ERR_BADKEYVER44Specified version of key is not available
KRB_AP_ERR_NOKEY45Service key not available
KRB_AP_ERR_MUT_FAIL46Mutual authentication failed
KRB_AP_ERR_BADDIRECTION47Incorrect message direction
KRB_AP_ERR_METHOD48Alternative authentication method required
KRB_AP_ERR_BADSEQ49Incorrect sequence number in message
KRB_AP_ERR_INAPP_CKSUM50Inappropriate type of checksum in message
KRB_AP_PATH_NOT_ACCEPTED51Policy rejects transited path
KRB_ERR_RESPONSE_TOO_BIG52Response too big for UDP; retry with TCP
KRB_ERR_GENERIC60Generic error (description in e-text)
KRB_ERR_FIELD_TOOLONG61Field is too long for this implementation
KDC_ERROR_CLIENT_NOT_TRUSTED62Reserved for PKINIT
KDC_ERROR_KDC_NOT_TRUSTED63Reserved for PKINIT
KDC_ERROR_INVALID_SIG64Reserved for PKINIT
KDC_ERR_KEY_TOO_WEAK65Reserved for PKINIT
KDC_ERR_CERTIFICATE_MISMATCH66Reserved for PKINIT
KRB_AP_ERR_NO_TGT67No TGT available to validate USER-TO-USER
KDC_ERR_WRONG_REALM68Reserved for future use
KRB_AP_ERR_USER_TO_USER_REQUIRED69Ticket must be for USER-TO-USER
KDC_ERR_CANT_VERIFY_CERTIFICATE70Reserved for PKINIT
KDC_ERR_INVALID_CERTIFICATE71Reserved for PKINIT
KDC_ERR_REVOKED_CERTIFICATE72Reserved for PKINIT
KDC_ERR_REVOCATION_STATUS_UNKNOWN73Reserved for PKINIT
KDC_ERR_REVOCATION_STATUS_UNAVAILABLE74Reserved for PKINIT
KDC_ERR_CLIENT_NAME_MISMATCH75Reserved for PKINIT
KDC_ERR_KDC_NAME_MISMATCH76Reserved for PKINIT

Windows Event Log Analysis Splunk App

Build a great reporting interface using Splunk, one of the leaders in the Security Information and Event Management (SIEM) field, linking the collected Windows events to www.eventid.net.

Read more...

 

Cisco ASA Log Analyzer Splunk App

Obtain enhanced visibility into Cisco ASA firewall logs using the free Firegen for Cisco ASA Splunk App. Take advantage of dashboards built to optimize the threat analysis process.

Read more...