Уважаемые Знатоки, машина не вводится в домен, стоит керберос5 и самба.
вот ошибка
proxy# net ads join -U Vitaliy.Yakubov
Vitaliy.Yakubov's password:
Using short domain name -- CINIMEX
Failed to set servicePrincipalNames. Please ensure that
the DNS domain of this server matches the AD domain,
Or rejoin with using Domain Admin credentials.
Deleted account for 'PROXY' in realm 'CINIMEX'
Failed to join domain: Type or value exists
----------------------------------------------------------
конфиг самбы
proxy# more /usr/local/etc/smb.conf
[global]
workgroup = cinimex
server string = Domain authentication server
security = ads
realm = CINIMEX
log file = /var/log/samba.%m
max log size = 50000
netbios name = PROXY
password server = cisrv.cinimex
encrypt passwords = yes
max log size = 50000
winbind separator = +
winbind use default domain = yes
winbind uid = 10000-15000
winbind gid = 10000-15000
winbind enum users = yes
winbind enum groups = yes
----------------------------------------------------------
конфиг кербероса
[libdefaults]
default_realm = CINIMEX
# permitted_enctypes = des-cbc-md5 des-cbc-crc des-cbc-sha1
clockskew = 300
# default_keytab_name = FILE:/etc/krb5.keytab
v4_instance_resolve = false
v4_name_convert = {
host = {
rcmd = host
ftp = ftp
}
plain = {
something = something-else
}
}
[appdefaults]
pam={
ticket_lifetine = 1w
renew_lifetime = 1w
forwardable = true
proxiable = false
retain_after_close = true
}
[realms]
CINIMEX = {
kdc = cisrv.cinimex
admin_server = cisrv.cinimex
default_domain = cinimex
}
OTHER.REALM = {
v4_instance_convert = {
kerberos = kerberos
computer = cisrv.cinimex
}
}
[domain_realm]
.cinimex = CINIMEX
cinimex = CINIMEX
[logging]
kdc = FILE:/var/log/krb5kdc.log
admin_server = FILE:/var/log/kadmin.log
default = FILE:/var/log/krb5lib.log
буду благодарен за любую помощь
Форум —
Admin
