LinuxQuestions.org
Share your knowledge at the LQ Wiki.
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Networking
User Name
Password
Linux - Networking This forum is for any issue related to networks or networking.
Routing, network cards, OSI, etc. Anything is fair game.

Notices

Reply
 
Search this Thread
Old 10-04-2005, 05:39 PM   #1
eantoranz
Senior Member
 
Registered: Apr 2003
Location: Colombia
Distribution: Kubuntu, Debian, Knoppix
Posts: 1,982
Blog Entries: 1

Rep: Reputation: 83
Question Problems joining a linux box to an active directory


I had already joined one box at my office, and it was sooooooooooooo easy.

All I had to do was:

set the security to domain

set the workgroup, set the realm, and join.

But I'm trying at a different place, and I just don't get to do it.

I have already set two names at /etc/samba/lmhosts and got to make it advance a little, but now I'm stuck.

When I join, this is the output:

Code:
# net join -U Administrator
Administrator's password:
[2005/10/04 18:27:17, 0] libads/kerberos.c:ads_kinit_password(146)
  kerberos_kinit_password Administrator@MATERNOBARINAS failed: Cannot resolve network address for KDC in requested realm
[2005/10/04 18:27:17, 0] utils/net_ads.c:ads_startup(186)
  ads_connect: Cannot resolve network address for KDC in requested realm
Joined domain MATERNOBARINAS.
root@proxy:/home/antoranz #
There is a problem. But what is it?

Look at the end. It sais I'm joined. But when I test, this is the output:

Code:
# wbinfo -t
checking the trust secret via RPC calls failed
error code was NT_STATUS_INTERNAL_ERROR (0xc00000e5)
Could not check secret
See? What's the problem?
 
Old 10-04-2005, 05:47 PM   #2
eantoranz
Senior Member
 
Registered: Apr 2003
Location: Colombia
Distribution: Kubuntu, Debian, Knoppix
Posts: 1,982
Blog Entries: 1

Original Poster
Rep: Reputation: 83
I tried with join ADS

See now:
Code:
# net ADS join -U Administrator
Administrator's password:
[2005/10/04 18:44:36, 0] libads/kerberos.c:ads_kinit_password(146)
  kerberos_kinit_password Administrator@MATERNOBARINAS failed: Cannot resolve network address for KDC in requested realm
[2005/10/04 18:44:36, 0] utils/net_ads.c:ads_startup(186)
  ads_connect: Cannot resolve network address for KDC in requested realm
At least it doesn't say I did join the domain.

Now, the computer shows op on the "computers" section of the Active Directory. And when I look at the information of the host, it says that its DNS name is: localhost.localdomain instead of proxy.maternobarinas

Maybe that can help you tell me what's going on.
 
Old 10-05-2005, 02:05 PM   #3
eantoranz
Senior Member
 
Registered: Apr 2003
Location: Colombia
Distribution: Kubuntu, Debian, Knoppix
Posts: 1,982
Blog Entries: 1

Original Poster
Rep: Reputation: 83
This is driving me crazy.

I tweaked a little and managed to stablish trust relationship between the ADS and the host. This box is going to work as a authenticating proxy (squid / ntlm_auth)... and I managed to get it working... but after a while, the trust relationship is p}broken and all authentication stops.

What could be causing it?

PS Forgot to tell you that I had to install krb5.
 
  


Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
Active Directory Integration -- Out of the Box ibanix Linux - Distributions 1 07-26-2005 06:27 PM
Linux box Authenticate against Active Directory tulip4heaven Linux - Networking 2 05-31-2005 12:31 AM
Joining a Linux workstation to a Active Directory Domain Terrence Hinds Linux - Networking 3 10-21-2004 05:45 AM
Allowing Win2k active directory users to logon to redhat 9 box. bobo_snyder Linux - Newbie 1 10-05-2004 06:08 PM
Authintication of users on a linux box via Active Directory krazyglue Linux - Networking 0 10-20-2003 08:56 AM


All times are GMT -5. The time now is 12:05 AM.

Main Menu
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
identi.ca: @linuxquestions
Facebook: linuxquestions Google+: linuxquestions
Open Source Consulting | Domain Registration