This message was deleted.
# microsoft-fslogix
s
This message was deleted.
πŸ‘€ 4
πŸ‘πŸΌ 1
πŸ‘πŸ½ 1
πŸ‘ 10
πŸ™Œ 1
b
This is due to locked credentials.
r
thanks for the tip, storing this for a cya
s
@Balint Oberrauch Do you have more information for this outcome? did you test this with your problematic servers or was this recommendation from a ticket?
b
I tested this, no more issues since then.
πŸ‘ 1
r
Just was curious how you stumbled on this?
b
Disabling Defender fixed it at first. handle64.exe by Sysinternals showed an open handle from lsass.exe on the Credentials folder and since excluding it we have no more locked Profiles.
r
Ok cool. Thanks man
s
our security department won't exclude it because of security reasons 😞
πŸ‘ 1
t
This has resolved issues with leftover local_username directories we were seeing on multiple servers, thanks πŸ‘
r
@Selimir I do see it listed here. I know it’s not win10. But if MS recommens it for a DC, why will they not allow you to test with it on a VDI/RDSH? Process exclusions for AD DS and AD DS-related support files %systemroot%\System32\ntfrs.exe %systemroot%\System32\lsass.exe https://learn.microsoft.com/en-us/microsoft-365/security/defender-endpoint/configure-server-exclusions-microsoft-defender-antivirus?view=o365-worldwide#the-list-of-automatic-exclusions
πŸ‘ 2