Solved

Can't join OS X (10.6.6) to AD domain...

Posted on 2011-02-25
10
1,050 Views
Last Modified: 2012-05-11
I'm trying to join a OS X server to my 2008 AD domain but I'm having some issues...

I have enabled the Active Directory utility on the mac and then I've double-clicked it and filled in the domain and even given it a 'preferred' DC to contact. Then I've given it the enterprise admin account and click bind, but when I do that I get:

"unable to access domain controller. This computer is unable to access the domain controller for an unknown reason"

DNS is working well on the Mac and I can ping the domain controller by IP and FQDN, and vice versa.

I don't see anything in the log about this either.

Can anyone tell me how to get past this so that I can take advantage of AD groups and users on the Mac server?
0
Comment
Question by:willlandymore
  • 3
  • 2
  • 2
  • +2
10 Comments
 
LVL 76

Accepted Solution

by:
arnold earned 500 total points
ID: 34987899
0
 
LVL 1

Expert Comment

by:orbistechnology
ID: 34987907
Just for clarification, on your Mac, is your DNS set to be the domain controller - and *only* the domain controller?
0
 
LVL 11

Expert Comment

by:gmbaxter
ID: 34988795
Have you tried:

Not specifying a DC

Binding into another CN or OU
0
 
LVL 20

Expert Comment

by:woolnoir
ID: 34988856
have you tried the short domain name and the FQDN for the domain ? try not specifying a specific DC, whats in the OSX logs when you try to join (use console viewer).
0
 
LVL 1

Author Comment

by:willlandymore
ID: 34997300
tried it with:
-domain and domain.com
-with and without specifying the DC
-it only uses the 1st and 2nd DC for DNS
-same results when binding to another OU
0
Complete Microsoft Windows PC® & Mac Backup

Backup and recovery solutions to protect all your PCs & Mac– on-premises or in remote locations. Acronis backs up entire PC or Mac with patented reliable disk imaging technology and you will be able to restore workstations to a new, dissimilar hardware in minutes.

 
LVL 20

Expert Comment

by:woolnoir
ID: 34997769
and there is nothing in either the AD event log, or the directory log under OSX for the time the join is taking place ?
0
 
LVL 11

Expert Comment

by:gmbaxter
ID: 34998867
Are the clocks in sync ?

Can you repair permissions on the mac server and try again?

0
 
LVL 1

Expert Comment

by:orbistechnology
ID: 34999325
Good point baxter.  Clocks must not be out of sync by more than 5 minutes or Kerberos will break.
0
 
LVL 1

Author Comment

by:willlandymore
ID: 35020854
sorry for the delay. Clock is in sync to the second.
0
 
LVL 1

Author Comment

by:willlandymore
ID: 35217995
never could find an answer to this one.
0

Featured Post

Maximize Your Threat Intelligence Reporting

Reporting is one of the most important and least talked about aspects of a world-class threat intelligence program. Here’s how to do it right.

Join & Write a Comment

If you other experts are anything like me you are always looking into and testing out new features. While I was doing some research one day I ran across an app that I installed on my Mac and used as a security system. Mac OS X: SecureHome uses your …
There is a security feature on iOS devices that is nearly impenetrable when it has been activated.  This article will provide some possible solutions as well as necessary steps to take to ensure you do not end up with a locked device.
It is a freely distributed piece of software for such tasks as photo retouching, image composition and image authoring. It works on many operating systems, in many languages.
This video gives you a great overview about bandwidth monitoring with SNMP and WMI with our network monitoring solution PRTG Network Monitor (https://www.paessler.com/prtg). If you're looking for how to monitor bandwidth using netflow or packet s…

743 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

13 Experts available now in Live!

Get 1:1 Help Now