Morning all!
I've got a Debian box here that I'm trying to get to authenticate with Active Directory using Kerberos.
The domain is SGL.GROUP, we have three DCs (jup-svr01 10.0.7.1, jup-svr02 10.0.7.2, jup-svr09 10.0.7.9).
I've been following
this howto, though admittedly not quite to the letter. I've done everything via apt-get.
When I try to join the active directory, I get the following error:
Code:
jup-linux:/var# net ads join -U avi greenbury
avi's password:
[2008/04/01 10:42:28, 0] utils/net_ads.c:ads_startup(289)
ads_connect: Invalid or incomplete multibyte or wide character
jup-linux:/var# net ads join -U administrator
administrator's password:
[2008/04/01 10:53:07, 0] utils/net_ads.c:ads_startup(289)
ads_connect: Invalid or incomplete multibyte or wide character
jup-linux:/var#
I've found loads and loads of people asking about the same error, but no solutions...
The bits I've changed of my krb5.conf file are:
Code:
[libdefaults]
default_realm = SGL.GROUP
...
[realms]
SGL.GROUP = {
kdc = jup-svr01
kdc = jup-svr09
kdc = jup-svr02
admin_server = jup-svr02
default_domain = sgl.group
}
The whole of that is
here, and my smb.conf is
here
I've tried using realm = SGL.GROUP and realm = SGL.GROUP.REALM
Any ideas?