Client not found in Kerberos database while getting initial credentials. Thanks Michael- O for your reply. Before going to the solution, I would like to post few information regarding the kind of Active Directory Server and the way we have connected. We have a Active Directory server where 2 domain controllers are used for it. And a load balancer with port 3. Active directory from OBIEE and similar connections can be used in the krb. And consider the base domain as DOM1 and all our groups are created under sub- domain SUBDOM.
Samba is a free Open Source software which provides a standard interoperability between Windows OS and Linux/Unix Operating Systems. Samba can operate as a standalone.Thanks Michael-O for your reply. Before going to the solution, I would like to post few information regarding the kind of Active Directory Server and the way we have. So the SPN is set at the SUBDOM. DOM1. COM. Here are the few suggestions we have followed to integrate AD with OBIEE and Solved the most of the kinit issues. Instead of specfying the prinicpal name with the abosoute path, just mention with the accout_name@Fully. Qualified. Domain. Name. Changes in KRB5. Since the attribute "crypto" is specfied as "all" while creating keytab and setting the SPN, all the encryption types which is present in the keytab file as to be mentioned in the krb. Have included the primary domain controller ip address for the attribute kdc in [realms] section, this will be same as Michael- O specfied in point 2. DOM1. COM. d) include the host name of loadbalancer name in the admin_server attribute of [realms] section in krb.
0 Comments
Leave a Reply. |
AuthorWrite something about yourself. No need to be fancy, just an overview. Archives
November 2017
Categories |