[Samba] Unable to net ads join samba to an active directory domain Failed to join domain: failed to connect to AD: Can't contact LDAP server

Rowland Penny rpenny at samba.org
Wed Nov 17 09:56:58 UTC 2021

On Tue, 2021-11-16 at 15:10 -0800, Michael Evans wrote:
> > 
> What sections do you believe are missing, and how would those impact
> joining
> the active directory domain?
> Shares are missing, but none have been setup yet, that's a future me
> problem.

That wasn't your problem.

> ID mapping is based on RFC2307 and stored within the active
> directory; is "
> idmap config ad" sufficient for that task?  That is my understanding
> from
> the Samba AD Domain Member documentation.

Then read it again, this time follow the hyperlinks

> I did not "optionally map the domain Administrator account to the
> local root
> account on a Unix domain member.", as I don't need that account
> authenticating to operate as root on each server.  I have ssh and
> keybased
> auth already.

That isn't what it is added for, it allows you to set permissions from
Windows, you need it.

> All of the samba services are presently turned off, though I did try
> starting up winbind at one point to see if that's why the join had
> failed.

What OS is this ? Is something like a firewall getting in the way ?


More information about the samba mailing list