Hi Felix, You might take a look at the CIFS Service Troubleshooting wiki on genunix.org. In particular, the following entry mentions the TRUSTED_FOR_DELEGATION userAccountControl flag:
http://wiki.genunix.org/wiki/index.php/CIFS_Service_Troubleshooting#Joining_a_Domain_Using_an_OU_Admin_Account_.28TRUSTED_FOR_DELEGATION.29 Good luck! Cathleen. Felix Nielsen wrote: > Hi All, > > I am trying to get CIFS and ZFA Windows AD integration to work, but I > keep getting this error when accessing the UNC : > > Sep 24 10:24:32 cph41exchange smbd[451]: [ID 266262 daemon.error] > DOMAIN\UseR: idmap failed > > Opensolaris has joined the DOMAIN, and "smbutil view" works > > How can I troubleshoot this further? > > When joining the domain I get this "erroe" > > > Sep 24 13:34:18 cph41exchange smbd[451]: [ID 898201 daemon.notice] > Unable to set the TRUSTED_FOR_DELEGATION userAccountControl flag on > the machine account in Active Directory. Please refer to the > Troubleshooting guide for more information. > > Could that be a show stopper? > > Links I used : > http://blogs.sun.com/timthomas/entry/configuring_the_opensolaris_cifs_server > > http://wiki.genunix.org/wiki/index.php/Getting_Started_With_the_Solaris_CIFS_Service#How_to_Join_an_AD_Domain > > Thanks > Felix _______________________________________________ cifs-discuss mailing list [email protected] http://mail.opensolaris.org/mailman/listinfo/cifs-discuss
