Hi Felix,

You might take a look at the CIFS Service
Troubleshooting wiki on genunix.org. In
particular, the following entry mentions
the TRUSTED_FOR_DELEGATION
userAccountControl flag:

http://wiki.genunix.org/wiki/index.php/CIFS_Service_Troubleshooting#Joining_a_Domain_Using_an_OU_Admin_Account_.28TRUSTED_FOR_DELEGATION.29

Good luck!

                      Cathleen.

Felix Nielsen wrote:
> Hi All,
> 
> I am trying to get CIFS and ZFA Windows AD integration to work, but I 
> keep getting this error when accessing the UNC :
> 
> Sep 24 10:24:32 cph41exchange smbd[451]: [ID 266262 daemon.error] 
> DOMAIN\UseR: idmap failed
> 
> Opensolaris has joined the DOMAIN, and "smbutil view" works
> 
> How can I troubleshoot this further?
> 
> When joining the domain I get this "erroe"
> 
> 
> Sep 24 13:34:18 cph41exchange smbd[451]: [ID 898201 daemon.notice] 
> Unable to set the TRUSTED_FOR_DELEGATION userAccountControl flag on 
> the machine account in Active Directory.  Please refer to the 
> Troubleshooting guide for more information.
> 
> Could that be a show stopper?
> 
> Links I used :
> http://blogs.sun.com/timthomas/entry/configuring_the_opensolaris_cifs_server
> 
> http://wiki.genunix.org/wiki/index.php/Getting_Started_With_the_Solaris_CIFS_Service#How_to_Join_an_AD_Domain
> 
> Thanks
> Felix
_______________________________________________
cifs-discuss mailing list
[email protected]
http://mail.opensolaris.org/mailman/listinfo/cifs-discuss

Reply via email to