Installing Microsoft's Jan 11th 2022 Security Patches causes the Read-Only Domain Controllers To Reboot

Installing Microsoft's Jan 11th 2022 Security Patches causes the Read-Only Domain Controllers To Reboot

10559
Created On 02/22/22 21:13 PM - Last Modified 04/23/24 03:41 AM


Symptom


Installing any of the Microsoft Security Patches on Windows Server 2012 and 2016 after January 11th of 22 would cause Read-Only Domain Controllers running User-ID Agent Credentials to go into a reboot loop.

Environment


  • Windows Server 2012
  • Windows Server 2016
  • User-ID Credential Agent


Cause


The cause is currently unknown at this time. It is currently known to cause crashes on the following Windows Patches:

For Windows 2016

  • February 8, 2022—KB5010359 (OS Build 14393.4946)
  • January 17, 2022—KB5010790 (OS Build 14393.4889)
  • Out-of-band January 11, 2022—KB5009546 (OS Build 14393.4886)

For Wndows 2012:

  • February 8, 2022—KB5010395 (Security-only update)
  • KB5010794: Out-of-band update for Windows 8.1 and Windows Server 2012 R2: January 17, 2022
  • January 11, 2022—KB5009624 (Monthly Rollup)


Resolution


  1. Stop the User-ID Credential Agent from running automatically on your Windows Server.
  2. Based on which Windows Server version you are running check which Windows Patch are installed on your server from the list available above and uninstall them.
  3. Once the uninstallation of all the patches mentioned above is completed you can now run again the User-ID Credential Agent on your Windows Server.


Actions
  • Print
  • Copy Link

    https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA14u0000004NJKCA2&lang=en_US%E2%80%A9&refURL=http%3A%2F%2Fknowledgebase.paloaltonetworks.com%2FKCSArticleDetail&refURL=http%3A%2F%2Fknowledgebase.paloaltonetworks.com%2FKCSArticleDetail

Choose Language