Avatar of Ludwig Diehl
Ludwig Diehl
Flag for Peru asked on

FREENAS 9.3 - Can't join AD

Hi everyone. I'm going crazy trying to join my FREENAS server to windows 2008 AD service. I've tried almost everything with no luck. I always get this message:
Unable to find domain controllers for innovateperu.local.
and the log shows:  
FreeNAS_ActiveDirectory_Base.get_SRV_records: no SRV records for _ldap._tcp.dc._msdcs.innovateperu.local found, fail!
I have attached some screenshots of my FREENAS configuration

PS.
My local domain is: innovateperu.local
ad_conf.png
cifs_conf.png
network_conf.png
config.png
krb5.png
resolv.png
smb4.png
Active DirectoryWindows Server 2008FreeBSDStorage Software

Avatar of undefined
Last Comment
Ludwig Diehl

8/22/2022 - Mon
Adam Brown

Check your Active Directory DNS zones to make sure the MSDCS folder/Forward Lookup Zone is there and that there is a valid SRV record under _TCP.DC folder.
Aard Vark

Have you considered upgrading to the latest stable release (9.10.1 has probably been out for a few months now).

There are quite a few AD joining bugs in 9.3.

https://bugs.freenas.org/issues/7181
https://bugs.freenas.org/issues/10860
https://bugs.freenas.org/issues/6980
Ludwig Diehl

ASKER
Thx for your replies. I have tried host -a _ldap._tcp.dc._msdcs.innovateperu.local. I get response...
About migrating version. This server is in production environment and holds my VM so I cannot restart it. Is there any other approach?
host.png
dns.png
Your help has saved me hundreds of hours of internet surfing.
fblack61
SOLUTION
Aard Vark

THIS SOLUTION ONLY AVAILABLE TO MEMBERS.
View this solution by signing up for a free trial.
Members can start a 7-Day free trial and enjoy unlimited access to the platform.
See Pricing Options
Start Free Trial
GET A PERSONALIZED SOLUTION
Ask your own question & get feedback from real experts
Find out why thousands trust the EE community with their toughest problems.
Ludwig Diehl

ASKER
See the attached image for results from host command.
By the way I did try what FreeNAS suggests.
srv.png
Aard Vark

Yeah, I would definitely try spin up a new VM to test joining a newer version to your AD environment. I can only assume its some sort of bug in FreeNAS 9.3.
Ludwig Diehl

ASKER
thanks anyway. I will try that.
⚡ FREE TRIAL OFFER
Try out a week of full access for free.
Find out why thousands trust the EE community with their toughest problems.
ASKER CERTIFIED SOLUTION
Venkat Suresh

THIS SOLUTION ONLY AVAILABLE TO MEMBERS.
View this solution by signing up for a free trial.
Members can start a 7-Day free trial and enjoy unlimited access to the platform.
See Pricing Options
Start Free Trial
⚡ FREE TRIAL OFFER
Try out a week of full access for free.
Find out why thousands trust the EE community with their toughest problems.
Ludwig Diehl

ASKER
freenas as a computer object exists from the beginning. That was the first thing I did when trying to join it to my domain
Venkat Suresh

However as mentioned earlier, did you add permissions on the OU where FREENAS computer object exists.
Ludwig Diehl

ASKER
Thank you all for your help. I could finally join my domain. You would laugh if I told u that the computer object "FREENAS" was disabled in my AD! lol. After enabling it again it could join the AD with no prob.
I started with Experts Exchange in 2004 and it's been a mainstay of my professional computing life since. It helped me launch a career as a programmer / Oracle data analyst
William Peck