While waiting on a response from the more experienced on here than I.
I would double check time sync is correct between AD DC and IPA DC.
The AD DC will do a _srv_ record lookup for the IPA DC then attempt connection
to the Samba instance on said IPA DC from my understanding. So double check DNS
from AD perspective as well. Hope that helps.
FreeIPA-users mailing list -- firstname.lastname@example.org
To unsubscribe send an email to freeipa-users-le...@lists.fedorahosted.org