Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations wOOdy-Soft on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

EVENT ID: 1202 1

Status
Not open for further replies.

arlems

IS-IT--Management
Jul 31, 2003
84
US
I am getting the event ID 1202 which state that I have no mapping between account names and security IDs. I was able to resolve this error earlier but for whatever reason can't with this one.

I run FIND /I "cannot find" %systemroot%\security\logs\winglogon.log.

The result is "cannot find Power Users".

I then run FIND /I "mapping" %systemroot%\security\logs\winlogon.log and get the following result:

"Error 1332: No mapping between account names and security IDs was done.
[mapping] gpt00000.dom = Default Domain Policy
[mapping] gpt00001.inf = Default Domain Controllers Policy

When I then attempt to remove the unresolve accounts from each GPO, I can't find them.

Any direction would be much appreciated.

 
That did it:

Error code 0x534 (1332 Decimal)- "No mapping between account names and security IDs was done.": This was caused in my case by a security template applied locally (local security policy) that had the Power Users group used in the User Rights Assignment section on a Domain Controller. I just removed the 'Power Users' group (and any other group or user not in AD) from any policies that affect any DC and the errors go away after a secedit /refreshpolicy machine_policy /enforce command is issued.

I was not looking at the "Local Security Policy" because the FIND indicated that the unresolved account was in the default domain policies.

Thanks for you help.
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top