Page 3 of 3 FirstFirst 123
Results 21 to 23 of 23

Thread: user logon - blank workgroup

  1. #21

    Default Re: user logon - blank workgroup

    In the offical documentation is indicated that:

    User Logon Management. Use both an identity service (usually LDAP) and a user authentication service (usually Kerberos). This option is based on SSSD and in the majority of cases is best suited for joining Active Directory domains.
    This module is described in Section 7.3.2, “Joining Active Directory Using User Logon Management.

    And doing steps indicated in section 7.3.2 I face the "blank" workgroup error.

    So for the moment I prefer to open the bug indication.

    Antonio

  2. #22
    Join Date
    Jun 2008
    Location
    San Diego, Ca, USA
    Posts
    12,757
    Blog Entries
    2

    Default Re: user logon - blank workgroup

    Hi,
    I just took another look at the documentation and there is some important information that seems to be missing... <sigh>

    The documentation you're following (7.3.2) does not apply to the YaST module you're using.

    First, congrats on finding and installing the YaST Windows Domain Membership module (yast2-aducc). It's not installed by default, and should do a good job connecting to a SAMBA 4 server or AD Domain configured to support older ntfs protocols(primarily NetBIOS) but not typical modern versions of MSWindows AD.

    So, that's why you can't configure, SSSD, because this client doesn't support that.

    Instead, section 7.3.2 and its screenshots apply to the YaST Kerberos and LDAP client module which is installed by default and does support sssd (is not automatic, you still need to configure correctly following the documentation).

    Your main options for setting up your machine to join an AD are described on the following page... But again, section 4.1 may not be written well because it isn't clear of the 3 options the first and third would use the Kerberos and LDAP client module while the second would use the Windows Domain Membership module.

    https://doc.opensuse.org/documentati...rity-auth.html

    Hope that clears things up...

    And, another reminder...
    Although the documentation advises entering the IP address of the DC you're connecting to, I still highly recommend creating appropriate /etc/hosts entries to ensure working name resolution during initial setup and not relying on networking services all working properly...
    And, of course your NTP must (or highly, highly should point to the Domain NTP server which is often a DC)

    TSU
    Beginner Wiki Quickstart - https://en.opensuse.org/User:Tsu2/Quickstart_Wiki
    Solved a problem recently? Create a wiki page for future personal reference!
    Learn something new?
    Attended a computing event?
    Post and Share!

  3. #23

    Default Re: user logon - blank workgroup

    Hi.

    actually on the page I'm following (in section 7.3.2) it says:

    To join an Active Directory domain using SSSD and the User Logon Management module of YaST, proceed as follows:

    So the user logon management module of yast use sssd (realmd) to join the linux client to active directory.

    For me the real problem is that in some way I have nscd activated and this cause conflicts with sssd.

    I will try some tests on a clean openSuse installation and the let you know.

    Also on Red Hat documentation it is indicated that sssd and nscd must not be used at the same time:

    https://access.redhat.com/documentation/en-us/red_hat_enterprise_linux/6/html/deployment_guide/usingnscd-sssd

    Regards

Page 3 of 3 FirstFirst 123

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •