Active Directory

What is Netlogon?

Netlogon

What is Netlogon Service?

Netlogon is a Local Security Authority service that runs in the background. It handles domain user login authentication. It maintains a secure channel between this computer and the domain controller for authenticating users and services. If this service is stopped, the computer may not authenticate users and services and the domain controller cannot register DNS records. If this service is disabled, any services that explicitly depend on it will fail to start.

The public files for a domain are kept in the sysvol sub directory and replicated to every domain controller. Computers deployed within a domain can use the login scripts and group policies included in the netlogon sub directory.

what-is-netlogon
what-is-netlogon

Registration of DC records (SRV, CNAME etc.) in DNS: – Advertise about DC through ‘SRV’ records so that client can locate a DC: – Re-Registration of SRV Records regularly: – Helps in site coverage (Registers SRV Records for a site with no DC) NetLogon’ is a service. NetLogon Service is very important for user logging process in Domain Controllers. It verifies NTLM logon requests, and it locates, registers and authenticates domain controllers at the time of logon.

  • Secure Channel between DC and client: – This service is responsible for creating Secure Channel between Domain Controllers and client computers. Secure Channel is created to pass the authentication packets.
  • Registration of DC records in DNS and advertise about DC: Service performs the registration of SRV records, CNAME and other DC records in the DNS Server to advertise the availability of Domain Controllers in the domain.
  • SRV Records registered by NetLogon Service are stored in C:\Windows\System32\Config\NetLogon.DNS File.
  • Re-Registration of SRV Records regularly: – Performs registration of SRV Records every 24 hours depending on the version of Operating System in use.
  • Registers SRV Records for a site with no DC: – Registers the SRV Records for a site where there is no Domain Controller. This is called Site Coverage.

So, that’s all in this blog. I will meet you soon with next stuff. Have a nice day!!!

Guys please don’t forget to like and share the post. Also join our WindowsTechno Community and where you can post your queries/doubts and our experts will address them.

You can also share the feedback on below windows techno email id.

If you have any questions feel free to contact us on admin@windowstechno.com also follow us on facebook@windowstechno to get updates about new blog posts.

How useful was this post?

Click on a star to rate it!

As you found this post useful...

Follow us on social media!

Was this article helpful?
YesNo

Vipan Kumar

He is an Active Directory Engineer. He has been working in IT industry for more than 10 years. He is dedicated and enthusiastic information technology expert who always ready to resolve any technical problem. If you guys need any further help on subject matters, feel free to contact us on admin@windowstechno.com Please subscribe our Facebook page as well website for latest article. https://www.facebook.com/windowstechno

Leave a Reply

Back to top button