[Samba] Error joining Samba 4.7.4 DC to existing Win2008R2 domain

Andrew Bartlett abartlet at samba.org
Mon Mar 5 18:16:58 UTC 2018


On Fri, 2018-03-02 at 09:19 +0100, Ing. Claudio Nicora via samba wrote:
> Failed to bind - LDAP error 49 LDAP_INVALID_CREDENTIALS - <8009030C: 
> LdapErr: DSID-0C0904D0, comment: AcceptSecurityContext error, data 52e, 
> v1db0> <>
> Failed to connect to 'ldap://SRVAD-OLD.SAMDOM.LOCAL' with backend 
> 'ldap': LDAP error 49 LDAP_INVALID_CREDENTIALS - <8009030C: LdapErr: 
> DSID-0C0904D0, comment: AcceptSecurityContext error, data 52e, v1db0> <>
> ---
> 
> Don't know how an authentication error could occur after being able to 
> create DNS records, DC computer account...

This is in part of the code that tries to avoid 'cleaning up' an
account that we are actually fully joined with.  It produces a bit of
noise but is otherwise harmless.

It was added after a user re-joined their fully working DC to the
domain, causing trouble as it re-synced a large domain.  That same code
runs in the clenaup mode you see here.

Sorry for the further red herrings. 

Andrew Bartlett

-- 
Andrew Bartlett                       http://samba.org/~abartlet/
Authentication Developer, Samba Team  http://samba.org
Samba Developer, Catalyst IT          http://catalyst.net.nz/services/samba




More information about the samba mailing list