As the title indicates, on Windows 2008 R2, use of SETSPN -L domain\account returns Ldap Error(0x22 -- Invalid DN Syntax): ldap_search_s
What little information I could find, says the domain\account may contain an 'invalid' character in its name. However, I do not have sufficient privileges on the domain or forest to change the account's information in Active Directory.
Is there anything else I should check or might be able to do to get a list of SPN's registered to the account?
$symbol in it, i.e.DOMAIN\$zz_anaccountand I also get the error. I have not found out how I can 'escape' it though. I certainly can't change the name of it. Quite annoying. – Nick.Mc Jan 19 '16 at 07:45