A Guide to Log Files – Microsoft Entra (Azure AD) Kerberos Server Object

When integrating Azure AD Kerberos with our on-premises Kerberos authentication, as specified in the Microsoft documentation, we install the Azure AD Kerberos server object. This step is essential to enable the conversion of the cloud TGT to an on-premises TGT. During this installation, you might encounter certain issues.

For troubleshooting purposes, you should be aware that the installation logs can be found at the following path on the device where the installation is being carried out: C:\ProgramData\AADConnect\trace-xxxx.log. These logs are essential for diagnosing and resolving any installation-related issues.

Related Articles:

Passwordless security key sign-in to on-premises resources | Microsoft Learn

How Azure Active Directory Kerberos works, including Azure Virtual Desktop and FSLogix (microsoft.com)