Domain Controller Keeps Locking Out Account
The domain controller names are obscured.
Domain controller keeps locking out account. If a password is modified and a user account gets locked it can be a frustrating process to get the ad account re enabled. Modify the default domain controllers policy. Search for the dc domain controller having the pdc emulator role.
Below is an example of what a locked out account looks like. If you already know the lockout account in question you can start directly from step 5 to track source. This event id will contain the source computer of the lockout.
The event id 4740 needs to be enabled so it gets locked anytime a user is locked out. Follow the below steps to track locked out accounts and find the source of active directory account lockouts. Open the group policy management console.
All domain controllers will replicate the account lockout status anyway but the orig lock will be the initial dc that processed the log on request. You can try the following steps to track the locked out accounts and also find the source of ad account lockouts.