Quantcast
Channel: All Centrify Express posts
Viewing all articles
Browse latest Browse all 1833

Re: GSSAPI authentication works on one machine, but not on three (almost) exact clones

$
0
0

,

 

Welcome to the community.

 

Please make sure that when you make clones, you run the "sudo adleave --remove" command prior to creating the clone.  Otherwise there is unique machine information tatooed in the system.

 

Please do this, then join each machine individually (the original and the clones) with different names, IPs and report back your results.

 

There's no use to start troubleshooting this without making sure that the cloning process was integral.

 

Note for future readers:  The same way a Window system has to be sysprepped before cloning it, an AD-joined, Centrify system has to be reset to just having the normal bits in place without any "unique machine join info" tied to the box.  Otherwise strange things will happen.

Alternatively, you can use a DevOps solution to have the system pull the Centrify bits, customize and automate the join.  We can do this with full-fledged OSs and with containers.  There are several articles in the TechBlog section that outline how to do this in your environment, in clouds like AWS, etc.

 

R.P


Viewing all articles
Browse latest Browse all 1833

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>