Ok. No 4108 for my cert so I took the GPO out of the ou the computer was in. Removed the outlook profile. Rebooted. Ran wizard. Life is good. So I need to find out why we implemented that GPO and do something else to remediate that issue and not cause this issue.
From: [email protected] [mailto:[email protected]] On Behalf Of Kennedy, Jim Sent: Tuesday, December 15, 2015 12:02 PM To: [email protected] Subject: RE: [Exchange] Just started getting this on my latest workstations. Check the event log for a 4108 event. ‘Successful auto delete of a third-party root certificate” and if yes, make sure the thumbprint in the log matches the cert…or chain of the cert that is causing this error. The answer actually might be the opposite, your machine missed that GPO and deleted a cert it should not have. From: [email protected]<mailto:[email protected]> [mailto:[email protected]] On Behalf Of David McSpadden Sent: Tuesday, December 15, 2015 11:56 AM To: [email protected]<mailto:[email protected]> Subject: RE: [Exchange] Just started getting this on my latest workstations. Would this GPO be my cause? Disable Microsoft Certificate Validation Data collected on: 12/15/2015 11:52:01 AM hide all Generalhide<about:blank> Detailshide<about:blank> Domain IMCU.local Owner IM_DOM1\Domain Admins Created 11/23/2015 1:10:48 PM Modified 11/23/2015 1:12:08 PM User Revisions 0 (AD), 0 (SYSVOL) Computer Revisions 8 (AD), 8 (SYSVOL) Unique ID {0F9FE1C1-D627-4444-9A3A-4988ACA1D457} GPO Status Enabled Linkshide<about:blank> Location Enforced Link Status Path IMCU No Enabled IMCU.local This list only includes links in the domain of the GPO. Security Filteringhide<about:blank> The settings in this GPO can only apply to the following groups, users, and computers: Name NT AUTHORITY\Authenticated Users Delegationhide<about:blank> These groups and users have the specified permission for this GPO Name Allowed Permissions Inherited IM_DOM1\Domain Admins Edit settings, delete, modify security No IM_DOM1\Enterprise Admins Edit settings, delete, modify security No NT AUTHORITY\Authenticated Users Read (from Security Filtering) No NT AUTHORITY\ENTERPRISE DOMAIN CONTROLLERS Read No NT AUTHORITY\SYSTEM Edit settings, delete, modify security No Computer Configuration (Enabled)hide<about:blank> Policieshide<about:blank> Windows Settingshide<about:blank> Security Settingshide<about:blank> Public Key Policies/Certificate Path Validation Settings/Network Retrievalhide<about:blank> Policy Setting Default URL retrieval timeout in seconds 15 Default path validation cumulative timeout in seconds 20 Allow issuer certificate retrieval during path validation Enabled Default cross-certificate download interval in hours 168 Administrative Templateshide<about:blank> Policy definitions (ADMX files) retrieved from the central store. System/Internet Communication Management/Internet Communication settingshide<about:blank> Policy Setting Comment Turn off Automatic Root Certificates Update Enabled User Configuration (Enabled)hide<about:blank> No settings defined. This e-mail and any files transmitted with it are property of Indiana Members Credit Union, are confidential, and are intended solely for the use of the individual or entity to whom this e-mail is addressed. If you are not one of the named recipient(s) or otherwise have reason to believe that you have received this message in error, please notify the sender and delete this message immediately from your computer. Any other use, retention, dissemination, forwarding, printing, or copying of this email is strictly prohibited. Please consider the environment before printing this email. This e-mail and any files transmitted with it are property of Indiana Members Credit Union, are confidential, and are intended solely for the use of the individual or entity to whom this e-mail is addressed. If you are not one of the named recipient(s) or otherwise have reason to believe that you have received this message in error, please notify the sender and delete this message immediately from your computer. Any other use, retention, dissemination, forwarding, printing, or copying of this email is strictly prohibited. Please consider the environment before printing this email.
