[Freeipa-users] Cross Domain Trust

Zoske, Fabian f.zoske at euroimmun.de
Tue Dec 15 10:58:09 UTC 2015


I’ve setup an IPA-Server with a handful of clients and AD-Trust.
The server is a CentOS7.1 with IPA4.1 and the clients are mostly Ubuntu Server 14.04 LTS.
Our IPA-Domain is like ipa-domain.com and our AD-Domain is like ad-domain.local, but our user principals in AD are user at old-domain.com<mailto:user at old-domain.com> for backward compatibility.

On the Ubuntu clients I can login with my AD-Credentials, but when trying to do the same on a joined CentOS Server I can’t login.
In the logs I can see, that there is no KDC for OLD-DOMAIN.COM is found.

Why does this scenario works on Ubuntu but not on CentOS?
Can I do something about this?

Best regards,
Fabian
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://listman.redhat.com/archives/freeipa-users/attachments/20151215/dda88991/attachment.htm>


More information about the Freeipa-users mailing list