Hi Robertson,
Thank you for your reply.
I have validated the setup and it seems to work this far,
root@redacted-host:~# adinfo -m connected root@redacted-host:~# /usr/share/centrifydc/kerberos/bin/kinit redacted-user Password for redacted-user@some.domain.COM: root@redacted-host:~# /usr/share/centrifydc/kerberos/bin/klist Ticket cache: FILE:/tmp/krb5cc_0 Default principal: redacted-user@some.domain.COM Valid starting Expires Service principal 08/26/2017 10:49:42 08/26/2017 20:49:42 krbtgt/some.domain.COM@some.domain.COM renew until 08/27/2017 10:49:34
This part works perfectly fine, it's the next step that fails
root@redacted-host:~# id redacted-user id: redacted-user: no such user root@redacted-host:~# getent passwd redacted-user root@redacted-host:~# adquery user redacted-user redacted-user is not a zone user root@redacted-host:~#
Since I joined the domain I have restarted the host.