Ok - so I'm making progress. Went over my DNS stuff. Now I see:
-bash-3.2# ./adjoin.sh mydomain.com
Looking for domain controllers and global catalogs (A RRs)
Looking for KDCs and DCs (SRV RRs)
KDCs = 88
DCs = 389
kinit(v5): Improper format of Kerberos /etc/krb5/krb5.conf configuration file
while initializing Kerberos 5 library
Could not get a Kerberos V TGT for your admin principal
I also see a bug issue for this:
http://bugs.opensolaris.org/bugdatabase/view_bug.do?bug_id=6612490
My configuration is (taken from
http://blog.scottlowe.org/2006/08/15/solaris-10-and-active-directory-integration/):
[libdefaults]
default_realm = EXAMPLE.COM
dns_lookup_kdc = true
verify_ap_req_nofail = false
[realms]
EXAMPLE.COM = {
kdc = dc01.example.com
kdc = dc02.example.com
admin_server = dc01.example.com
}
[domain_realm]
.example.com = EXAMPLE.COM
.subdomain.example.com = EXAMPLE.COM
[logging]
default = FILE:/var/krb5/kdc.log
kdc = FILE:/var/krb5/kdc.log
kdc_rotate = {
period = 1d
version = 10
}
[appdefaults]
kinit = {
renewable = true
forwardable= true
}
Anyone know anything about this?
This message posted from opensolaris.org
_______________________________________________
sysadmin-discuss mailing list
[email protected]
http://mail.opensolaris.org/mailman/listinfo/sysadmin-discuss