Moved by Tom PhillipsModerator Tuesday, July 13, 2010 2:35 PM Possibly better answer from TSQL forum (From:SQL Server Database Engine) Tuesday, July 13, 2010 1:20 PM Reply | Quote Answers 0 If the server cannot contact the domain controller, no information will be returned.xp_logininfo only returns information from Active Director global groups, not universal groups.PermissionsRequires membership in the sysadmin fixed server role You may download attachments. You cannot edit your own topics.
Error: 15404, State: 19. If account_name is a local group, the listing can include local users, domain users, and groups. I have a stored procedure that enumerates the various privileges granted in the instance. Log Name: ApplicationSource: MSSQLSERVERDate: 11/30/2012 2:33:48 PMEvent ID: 28005Task Category: ServerLevel: ErrorKeywords: ClassicUser: N/AComputer: ServerName.Domain.Company.comDescription:An exception occurred while enqueueing a message in the target queue.
Privacy statement © 2016 Microsoft. Username: Password: Save Password Forgot your Password? Admin privilege are returned first, and within the privilege they are returned in the order of creation. RegardsRakesh Post #1392819 « Prev Topic | Next Topic » Permissions You cannot post new topics.
An earlier post, “my guess is that 0x5 is an access denied message” is correct (according to my domain admin); but it refers to Active Directory permissions and not SQL Server Come on over! tkizer Almighty SQL Goddess USA 38200 Posts Posted-06/02/2010: 12:23:31 There aren't any members as those aren't groups.Tara KizerMicrosoft MVP for Windows Server System - SQL Serverhttp://weblogs.sqlteam.com/tarad/Subscribe to my Could Not Obtain Information About Windows Nt Group/user Error Code 0x5 over 15 years.I currently work for Microsoft as a Premier Field Engineer specializing in MS SQL Server, PowerShell, and SCOM.
The issue here was that the service account running the database engine service did not have permissions to read the container in which the end user account resides. Error Code 0x8ac Some components may not be visible. DOMAIN02) will be successful.Steps to Reproduce the IssueThe following steps are provided here to reproduce the error within an environment to meets the configuration as stated in the scenario above.Connect to It was not completely clear, since I had to translate it from Russian through Google translate.www.sql.ru%2Fforum%2Factualthread.aspx%3Ftid%3D642342&act=url" target="_blank">http://translate.google.com/translate?js=n&prev=_t&hl=en&ie=UTF-8&layout=2&eotf=1&sl=ru&tl=en&u=http%3A%2F%2Fwww.sql.ru%2Fforum%2Factualthread.aspx%3Ftid%3D642342&act=urlI am certain that the script is correctly identifying the AD groups, as it has
Topic Reply to Topic Printer Friendly Jump To: Select Forum General SQL Server Forums New to SQL Server Programming New to SQL Server Administration Script Library Data Corruption Issues Database mapped login name sysname For user accounts that have user privilege, mapped login name shows the mapped login name that SQL Server tries to use when logging in with this account Xp_logininfo Could Not Obtain Information About Windows Nt Group/user This membership could be inherited through another domain group being added to that BuiltIn group if you have a large number of servers to manage in your organisation.NOTE: In the past Could Not Obtain Information About Windows Nt Group User Error Code 0x8ac If a Windows user has access as both a system administrator and as a domain user, it will be reported as a system administrator.
I am spinning through syslogins, and pulling a list of logins identified as 'AD Group'. Leave a Reply Cancel reply Required fields are marked *.Message *Name * Email * Website Notify me of follow-up comments by email. Our new SQL Server Forums are live! If that doesn't help, you'll need to open a case with Microsoft as this appears to be something that they'll need to help you with.Tara KizerMicrosoft MVP for Windows Server System Could Not Obtain Information About Windows Nt Group User Error Code 0x2147
Yes No Additional feedback? 1500 characters remaining Submit Skip this Thank you! Given the time that this was posted I am guessing that you could be using Windows 2008.The scenario I found is documented in my blog.http://matticus-au.blogspot.com/2009/08/windows-2008-and-xplogininfo.htmlMatt Post #774747 mwfuruglmwfurugl Posted Friday, November Home | Weblogs | Forums | SQL Server Links Search: Active Forum Topics | Popular Articles | All Articles by Tag | SQL Server Books | About Please start any new You cannot edit other events.
I need it in order to imprsonate other users (using execute as user = , so that I could see what permissions they have. Valid values are admin, user, or null. Post unlocking the service account on domain issue got resolved.
If account_name cannot be identified as a valid Windows user or group, an error message is returned.If account_name and all are specified, all permission paths for the Windows user or group You cannot post events. Next Post → ← Previous Post High Coast Database Solutions High Coast Database Solutions Recent Posts SQL Agent job logging with tokens Solvency II QRT Names Toggl Time entries to SQL The most common types are 2 (interactive) and 3 (network).
SQL Server Forums Profile | ActiveTopics | Members | Search | ForumFAQ Register Now and get your question answered! You cannot post replies to polls. You cannot edit your own events. Please log in using one of these methods to post your comment: Email (required) (Address never made public) Name (required) Website You are commenting using your WordPress.com account. (LogOut/Change) You are
exec xp_logininfo 'DOMAIN01\matticus')This error occurs due to changes in the security of Windows 2008 and specifically changes to the Microsoft Windows API calls used to retrieve information about the Windows domains You cannot delete your own events. The same would occur for any other accounts within the Child Domain.Solution 1At this time the only solution I have found to this problem is to add the service account which To view the results for the currently logged in user, use this code: DECLARE @CURRENTUSER SYSNAME SET @CURRENTUSER = SUSER_SNAME() EXEC xp_logininfo @CURRENTUSER, 'all'; Posted in: System Stored Procedures Posted by
If you use the parameter ‘members' instead of ‘all', the next level members of the group is returned. Subject: Security ID: domainname\username Account Name: username Account Domain: domainname Logon ID: 0xce45929 Logon Type: 3 Account For Which Logon Failed: Security ID: NULL Developer Network Developer Network Developer Sign in MSDN subscriptions Get tools Downloads Visual Studio MSDN subscription access SDKs Trial software Free downloads Office resources SharePoint Server 2013 resources SQL Server 2014 That is why the "permission path" column is NULL.
Search for: Recent Posts SQL Server - Changing Sql Instance Collation - viasqlservr/-q SQL Server / Local Security Policies & PowerShell - UsingpInvoke.Net SQL Server - Determine Number of CPUCores Ola Status: 0xc000005e Sub Status: 0x0 Process Information: Caller Process ID: 0x146c Caller Process Name: C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe Network Information: Workstation Name: DESKTOP-a Source The error occurs when I run this query in some instances, but not in others. Thanks!
The admin privilege rows are returned before the user privilege rows, and within a privilege level rows are returned in the order in which the corresponding SQL Server logins were created.If For example, 'ADVWKS4\macraes', or 'BUILTIN\Administrators'.'all' | 'members' Specifies whether to report information about all permission paths for the account, or to report information about the members of the Windows group. @option You cannot post IFCode. An account failed to log on.
You cannot post topic replies. Copyright © 2002-2016 Simple Talk Publishing. Post #683654 Chand00Chand00 Posted Thursday, April 2, 2009 2:27 PM Mr or Mrs. 500 Group: General Forum Members Last Login: Monday, May 2, 2016 8:14 AM Points: 532, Visits: 1,248 Hi, Our new SQL Server Forums are live!
The Logon Type field indicates the kind of logon that was requested.