Event ID 4822
NTLM authentication failed because the account was a member of the Protected User groupNTLM authentication failed because the account was a member of the Protected User group. Account Name: %1 Device Name: %2 Error Code: %3
Lookup Audit Policy Configuration Settings
C:\> AuditPol.exe /get /subcategory:"Credential Validation"
Operating Systems:
Windows 2012 R2 Windows 8.1 Windows 10 Windows 2016 Windows 2019 Windows 11 Windows 2022LEFT/RIGHT arrow keys for navigation
Back to List