[gpfsug-discuss] Keytab error trying to join an active directory domain

Aidan Richmond a.g.richmond at leeds.ac.uk
Thu May 18 15:22:55 BST 2017


Hello

I'm trying to join an AD domain for SMB and NFS protocol sharing but I 
keep getting a "Failed to generate the kerberos keytab file" error. The 
command I'm running is

/usr/lpp/mmfs/bin/mmuserauth service create --data-access-method file 
--type ad --netbios-name @name@ --servers @adserver@ --user-name 
@username@ --idmap-role master --enable-nfs-kerberos --unixmap-domains 
"DS(1000-9999999)"

A correct keytab does appears to be created on the host I run this on 
(one of two protocol nodes) but not on the other one.

-- 
Aidan Richmond
Apple/Unix Support Officer, IT
Garstang 10.137
Faculty of Biological Sciences
University of Leeds
Clarendon Way
LS2 9JT

Tel:0113 3434252
a.g.richmond at leeds.ac.uk



More information about the gpfsug-discuss mailing list