Microsoft Active Directory Services uses the Kerberos single sign-on authentication protocol to secure applications and services with public key encryption as they communicate across the network. When a user account that is used to access the Kerberos Key Distribution Center receives a new account password, the new password must be entered into the Kerberos KDC (Key Distribution Center) service login account in order to generate new keys that will be used to secure the Kerberos connections. Use the “Active Directory Users and Computers” and “Services” utilities in Windows Server 2008 computer to reset Kerberos after a Domain Administrator account password has changed so that the Domain Administrator account will again have login access. Writer Bio
