Windows 7 CAC and Kerberos error
-
Friday, November 02, 2012 6:38 PM
We have loaded the DOD AGM image on a laptop. IT is joined to the domain and configured using the local administrator log in.
THEN we attempt to log in with the required DOD CAC and we get:
The Kerberos protocol encountered an error while validating the KDC certificate during logon through smart card
The event log shows Event ID 9
"The client has failed to validate the Domain Controller certificate for X.army.mil. The following error was returned from the certificate validation process: A certificate chain could not be built to a trusted root authority."
we do not control the Domain Controller..That is controlled by another DOD group. (just and FYI)
Event ID 9
- Edited by dfowler Friday, November 02, 2012 6:52 PM
All Replies
-
Monday, November 05, 2012 6:08 AMModerator
Hi,
The issue may be more related to the third party programs. Please understand that Microsoft has the limited resources about the third party programs. You may contact to their support team directly.Kim Zhou
TechNet Community Support
- Marked As Answer by Kim ZhouModerator Monday, November 12, 2012 3:54 AM
-
Wednesday, November 07, 2012 5:27 PMModerator
-
Thursday, November 08, 2012 3:37 PM
I had the same errors. In our case it was not a Microsoft error. The problem was the DOD certificates were not loaded on the computer. I had to go to Disa site. the computer did not have the templete for my CAC card.- Proposed As Answer by Justin D. Malyn Friday, November 16, 2012 3:18 PM

