gMSA with IIS and SQL server access failes during password changes

Martin Larsen 1 Reputation point
2022-01-17T09:15:29.167+00:00

We're running a series of websites configured to use gMSA as their identity.
All sites have access to our SQL server connecting with the respective gMSA account.
The SQL server have the gMSAs added to the relevant database to grant access.
Everyting is working as expected.

We're having issues when the gMSA recycles the password every month.
During recycling the website is denied SQL access, resulting in a series of failed request to the websites. It lasts for around 5 minutes.

The IIS and domain controllers are running on 2016 servers.

Is this to be expected or can we do something to resolve this?

The problem could essentially be with the Domain, IIS or the SQL server..
Any help would be appreciated.

Regards,
Martin

Windows
Windows
A family of Microsoft operating systems that run across personal computers, tablets, laptops, phones, internet of things devices, self-contained mixed reality headsets, large collaboration screens, and other devices.
4,740 questions
Internet Information Services
SQL Server
SQL Server
A family of Microsoft relational database management and analysis systems for e-commerce, line-of-business, and data warehousing solutions.
12,692 questions
Windows Server
Windows Server
A family of Microsoft server operating systems that support enterprise-level management, data storage, applications, and communications.
12,117 questions
{count} votes