我有一个全新安装的RHEL 7.2服务器,我想将它加入AD域.我已经在AD中预先安排了计算机名称,这就是当我按照“红帽企业
Linux 7 Windows集成指南”中的说明进行操作时会发生的情况.
我在我的部门使用拆分DNS:权威的校园范围的DNS服务器运行BIND并且不支持动态更新,所以我在我的部门运行一对Windows DNS服务器.
思考?
谢谢!
- [root@dept-example ~]# realm discover -v example.edu
- * Resolving: _ldap._tcp.example.edu
- * Performing LDAP DSE lookup on: 192.0.2.177
- * Performing LDAP DSE lookup on: 192.0.2.176
- * Successfully discovered: example.edu
- example.edu
- type: kerberos
- realm-name: EXAMPLE.EDU
- domain-name: example.edu
- configured: no
- server-software: active-directory
- client-software: sssd
- required-package: oddjob
- required-package: oddjob-mkhomedir
- required-package: sssd
- required-package: adcli
- required-package: samba-common
- [root@dept-example ~]# realm join example.edu -v -U 'example.edu\adm-jsmith'
- * Resolving: _ldap._tcp.example.edu
- * Performing LDAP DSE lookup on: 192.0.2.176
- * Performing LDAP DSE lookup on: 192.0.2.178
- * Successfully discovered: example.edu
- Password for example.edu\adm-jsmith:
- * required files: /usr/sbin/oddjobd,/usr/libexec/oddjob/mkhomedir,/usr/sbin/sssd,/usr/bin/net
- * LANG=C LOGNAME=root /usr/bin/net -s /var/cache/realmd/realmd-smb-conf.K4T3EY -U fsu.edu\adm-jsmith ads join example.edu
- Enter example.edu\adm-jsmith's password:
- Using short domain name -- EXAMPLE
- Joined 'DEPT-EXAMPLE' to dns domain 'example.edu'
- * LANG=C LOGNAME=root /usr/bin/net -s /var/cache/realmd/realmd-smb-conf.K4T3EY -U example.edu\adm-jsmith ads keytab create
- Enter example.edu\adm-jsmith's password:kerberos_kinit_password example.edu\adm-jsmith@EXAMPLE.EDU Failed: Client not found in Kerberos database
- kerberos_kinit_password example.edu\adm-jsmith@EXAMPLE.EDU Failed: Client not found in Kerberos database
- ! Extracting host keytab Failed
- realm: Couldn't join realm: Extracting host keytab Failed
- [root@dept-example ~]#