This event is generated every time access is requested to a resource such as a computer or a Windows service. The service name indicates the resource to which access was requested.
This event can be correlated with Windows logon events by comparing the Logon GUID fields in each event. The logon event occurs on the machine that was accessed, which is often a different machine than the domain controller which issued the service ticket.
Ticket options, encryption types, and failure codes are defined in RFC 4120.</Message><Level>Information</Level><Task>Kerberos Service Ticket Operations</Task><Opcode>Info</Opcode><Channel>Security</Channel><Provider>Microsoft Windows security auditing.</Provider><Keywords><Keyword>Audit Success</Keyword></Keywords></RenderingInfo></Event>
This is typically happening for Event ID 5140: The description should be "A Network share object was accessed"
Imported Document ID: TECH146383
Subscribing will provide email updates when this Article is updated. Login is required.