[Samba] Authentication to Secondary Domain Controller initially fails when PDC is offline

Ole Traupe ole.traupe at tu-berlin.de
Thu Dec 10 13:33:32 UTC 2015



Am 10.12.2015 um 14:05 schrieb James:
> On 12/10/2015 7:56 AM, Ole Traupe wrote:
>>
>>>> Any idea why I still get this when trying to log on to a member 
>>>> server while the first DC is down?
>>>>
>>>> # kinit: Cannot contact any KDC for realm 'MY.DOMAIN.TLD' while 
>>>> getting initial credentials
>>>>
>>>> Ole
>>>>
>>>>
>>>>
>>> Ole,
>>>
>>>     Can you try a few things? All on your member server. What is the 
>>> output of
>>>
>>> testparm | grep "name resolve order"
>>
>> There is no such line.
>>
>>
>>>
>>>  kdestroy -A
>>>
>>> kinit administrator at MY.DOMAIN.TLD -V
>>
>> Using default cache: /tmp/krb5cc_0
>> Using principal: administrator at MY.DOMAIN.TLD
>> Password for administrator at MY.DOMAIN.TLD:
>> Authenticated to Kerberos v5
>>
>>
> Sorry. The command is testparm -v | grep "name resolve order".

name resolve order = lmhosts wins host bcast


>
> It looks like your kinit succeed?
>

yes





More information about the samba mailing list