The description for Event ID '40960' in Source 'LsaSrv' cannot be found. The local computer may not have the necessary registry information or message DLL files to display the message, or you may not have permission to access them. The following information is part of the event:'HTTP/servername.domain.net', 'Kerberos', '"The user account has been automatically locked because too many invalid logon attempts or password change attempts have been requested. (0xc0000234)"'
The server(serverName) is is our Server SCCM environment trying to do somethingd
Could any one please help how to find locked user here