GFI ESM GFI ESM

Event ID: Event Source:

Event ID 533 Source Security

Event ID533
SourceSecurity
TypeFailure Audit
DescriptionLogon Failure:
Reason: User not allowed to logon at this computer
User Name: <user name>
Domain: <domain name>
Logon Type: <logon type>
Logon Process: <process>
Authentication Package: <package>
Workstation Name: <workstation name>
English, please! Request a translation of the event description in plain English.
Concepts to understand What is an authentication protocol?
Comments Ken Kiefer
If you have restricted an account to only logon from specific machines (via UserID properties -> Account tab -> Log On To... button), and then the account tries to authenticate from a machine not in the specific list, error 533 will be logged. The "workstation name" field in the error will indicate the machine or IP address from which the login attempt is coming.

Mihai Andrei
This error may occur if the domain user account that is used for anonymous access in IIS cannot log on to the IIS Web server. See M909887 to solve this problem.

See M318319 for a situation in which this event occurs.

Ionut Marin
The logon attempt failed. The user account used to log on is not permitted to log on from this computer. This restriction is configured on the user's domain account. See MSW2KDB for more details on this event.

Adrian Grigorof
Event generated by a logon failure due to a user not allowed to logon at this computer.
LinksM174074, M318319, M909887, Online Analysis of Security Event Log, MSW2KDB
Search Google Web - Microsoft Support - Bing - EventID.Net Queue - More links...
Feedback Send comments - Notify me when updated
 Print version