These are informational messages and have little to no security relevance.
This flag is no longer recommended in the Kerberos V5 protocol. KDCs SHOULD NOT preserve this flag if it is set by another KDC.
This event generates every time Key Distribution Center gets a Kerberos Ticket Granting Service (TGS) ticket request. If TGS issue fails then you will see Failure event with Failure Code field not equal to “0x0”.
You will typically see many Failure events with Failure Code “0x20”, which simply means that a TGS ticket has expired.
By default the KDC will check the transited field of a TGT against the policy of the local realm before it will issue derivative tickets based on the TGT.
If this flag is set in the request, checking of the transited field is disabled.