Link to home
Create AccountLog in
Avatar of Leverage IT Group, LLC.
Leverage IT Group, LLC.Flag for United States of America

asked on

Need Help with Mac Bind to AD

I'm in the middle of a project joining several computers (both Mac and Windows) to a .local domain. The project is slow going but no major issues until now. When trying to bind a specific Mac I get one of four errors:
1. Authentication server could not be contacted
2. Authentication server encountered an error while attempting the requested operation (5202)
3. The daemon encountered an error processing request (10002)
4. Unable to store password

Error number 4 is as far as I have gotten in the process - it will create a computer entry on the server if one doesn't exist (and will prompt me if one already exists) but something on the Mac won't finish the process.

I have turned off IPv6, I have set DNS to only point to the server, I have set the server to be the only search domain, I have created a new "Location" for the network settings and repeated all of those changes, I have tried from the IT admin account and from the user's admin account, I have verified that the time on Mac and server are as close together as possible (within 10 seconds). I have used the "easy" join option through System Preferences>Users>Login Options>Join and I have gone through Directory Utility.

I have successfully joined Macs to this domain before this machine and after this machine so I know that it's just this specific one being a pain.

Due to policy, I'm not able to download any third-party apps that would help with a domain join - especially since I haven't needed to use a software for any of the other Macs.

Any help or suggestions would be greatly appreciated.
Avatar of serialband
serialband
Flag of Ukraine image

Avatar of Leverage IT Group, LLC.

ASKER

Hello and thank you for the suggestion!

I was able to run a repair on both partitions of the user's primary drive which reports that it ran successfully but I did not see anything about it actually repairing any files. After running the repair, joining to the domain was still unsuccessful with all of the same errors over the different connection attempts.

Do you have any other suggestions? the Mac is running 10.15.4 if that makes a difference
Try the SMC reset and PRAM reset. Those are quick to do.  They've changed it for T2 chps.

Reset SMC:
https://support.apple.com/en-us/HT201295

Reset PRAM
https://support.apple.com/en-us/HT204063


Thank you serialband but neither of those options worked. The machine is a 2017 MBP so thankfully it was the older, non-T2 steps for resetting. There was no change today after resetting SMC and PRAM.

I have an appointment tomorrow morning to erase the hard drive and reinstall the OS. If you have any other suggestions for me to try before then, I will gladly try them. 
You can reinstall the OS on your own as well.  Reboot, then press command r to boot into recovery mode.  You can reinstall without erasing your profle data and applications.

Reinstall the OS is the next step after the SMC and PRAM resets
ASKER CERTIFIED SOLUTION
Avatar of serialband
serialband
Flag of Ukraine image

Link to home
membership
Create a free account to see this answer
Signing up is free and takes 30 seconds. No credit card required.
See answer
Thank you for the assistance serialband! I went ahead and just erased the hard drive and performed a clean install of the OS without attempting a soft reinstall. After getting into the machine and making sure I had the correct name set, I was immediately able to join the domain without any issue.