[Freeipa-users] Re: GSSAPI Error with AD trust

2021-04-26 Thread iulian roman via FreeIPA-users
That was it Sumit ! Thank You ! I need to check if that needs to be corrected on all the clients after the client enrolment. ___ FreeIPA-users mailing list -- freeipa-users@lists.fedorahosted.org To unsubscribe send an email to freeipa-users-le...@l

[Freeipa-users] Re: GSSAPI Error with AD trust

2021-04-26 Thread Sumit Bose via FreeIPA-users
Am Mon, Apr 26, 2021 at 08:32:51AM - schrieb iulian roman via FreeIPA-users: > I checked /etc/krb5.conf and it is mapped. I have tried as well the bellow > scenario, which might help in troubleshooting: Hi, so if you have a line example.local = IPADEV.EXAMPLE.LOCAL this is wrong, it

[Freeipa-users] Re: GSSAPI Error with AD trust

2021-04-26 Thread iulian roman via FreeIPA-users
I checked /etc/krb5.conf and it is mapped. I have tried as well the bellow scenario, which might help in troubleshooting: - If i configure trust with a different AD domain (the one created for test, with only one DC behind AD domain) , the same IPA domain works properly. The only difference

[Freeipa-users] Re: GSSAPI Error with AD trust

2021-04-26 Thread LHEUREUX Bernard via FreeIPA-users
TCP/UDP port 88 not open ? (Kerberos krb5) -Message d'origine- De : iulian roman via FreeIPA-users Envoyé : lundi 26 avril 2021 09:26 À : freeipa-users@lists.fedorahosted.org Cc : iulian roman Objet : [Freeipa-users] GSSAPI Error with AD trust I have an IPA setup with replica which has

[Freeipa-users] Re: GSSAPI Error with AD trust

2021-04-26 Thread Sumit Bose via FreeIPA-users
Am Mon, Apr 26, 2021 at 07:25:59AM - schrieb iulian roman via FreeIPA-users: > I have an IPA setup with replica which has trust configured with an Active > Directory domain. The trust has been configured and it does show correctly > when listed, but users cannot authenticate against Active D