[Samba] Failing to join existing AD as DC

Rowland penny rpenny at samba.org
Thu Aug 15 16:05:32 UTC 2019


On 15/08/2019 16:57, Alexander Harm via samba wrote:
> Sorry, am not used to a list that has real sender addresses…
>
>
>
> Samba is configured with internal DNS.
>
>
>
> # /etc/krb5.conf
>
> [libdefaults]
>
> 	default_realm = SAMDOM.EXAMPLE.COM
>
> 	dns_lookup_realm = false
>
> 	dns_lookup_kdc = true
>
>
> # /etc/ldap/ldap.conf
> TLS_CACERT	/etc/ssl/certs/ca-certificates.crt
> TLS_REQCERT allow
>
> # /etc/resolv.conf
> domain samdom.example.com
> search samdom.example.com
> nameserver 10.88.80.88 # windows dc
>
>
> ./samba-collect-debug-info.sh
> kinit: Client 'Administrator at SAMDOM.EXAMPLE.COM' not found in Kerberos database while getting initial credentials
> Wrong password, exiting now.
>
> Never asks me for a password though...
>
can you please do what Louis asked, download this:

https://raw.githubusercontent.com/thctlo/samba4/master/samba-collect-debug-info.sh

Run it on your potential DC and post the output in a post, this list 
strips attachments.

Rowland




More information about the samba mailing list