Security

last person joined: 7 hours ago 

Forum to discuss Enterprise security using HPE Aruba Networking NAC solutions (ClearPass), Introspect, VIA, 360 Security Exchange, Extensions, and Policy Enforcement Firewall (PEF).
Expand all | Collapse all

Join AD domain on Clearpass

This thread has been viewed 7 times
  • 1.  Join AD domain on Clearpass

    Posted Feb 03, 2015 03:45 AM

    On clearPass, I inserted domain and administrator'password then click "SAVE"

    This is result.

     

    Adding host to AD domain...
    INFO - Fetched REALM 'INTRA.POC.COM' from domain FQDN 'intra.poc.com'
    INFO - Fetched the NETBIOS name 'INTRA'
    INFO - Creating domain directories for 'INTRA'
    INFO - Using Administrator as the INTRA's username
    Enter Administrator's password:
    kinit succeeded but ads_sasl_spnego_krb5_bind failed: Unspecified GSS
    failure. Minor code may provide more information : Clock skew too great
    Failed to join domain: failed to connect to AD: Unspecified GSS
    failure. Minor code may provide more information : Clock skew too great
    INFO - Restoring smb configuration
    INFO - Restoring krb5 configuration file
    INFO - Deleting domain directories for 'INTRA'
    ERROR - clearpass failed to join the domain INTRA.POC.COM with domain
    controller as intra.poc.com

    Join domain failed

     

    How i will solve this problem ?

    Thanks,



  • 2.  RE: Join AD domain on Clearpass
    Best Answer

    EMPLOYEE
    Posted Feb 03, 2015 04:01 AM
    Your clocks are out of sync on the ad and cppm


  • 3.  RE: Join AD domain on Clearpass

    Posted Feb 04, 2015 01:23 AM

    After I sync clock on AD and ClearPass, Error is changed 

     

     

    Adding host to AD domain...
    INFO - Fetched REALM 'INTRA.POC.COM' from domain FQDN 'intra.poc.com'
    INFO - Fetched the NETBIOS name 'INTRA'
    INFO - Creating domain directories for 'INTRA'
    INFO - Using Administrator as the INTRA's username
    Enter Administrator's password:
    kinit succeeded but ads_sasl_spnego_krb5_bind failed: Unspecified GSS
    failure. Minor code may provide more information : Server not found in Kerberos database
    Failed to join domain: failed to connect to AD: Unspecified GSS
    failure. Minor code may provide more information : Server not found in Kerberos database
    INFO - Restoring smb configuration
    INFO - Restoring krb5 configuration file
    INFO - Deleting domain directories for 'INTRA'
    ERROR - clearpass failed to join the domain INTRA.POC.COM with domain
    controller as intra.poc.com

    Join domain failed



  • 4.  RE: Join AD domain on Clearpass



  • 5.  RE: Join AD domain on Clearpass
    Best Answer

    EMPLOYEE
    Posted Feb 04, 2015 05:19 AM
    Invalid FDQN