I have Centrify Express installed and authentication via ssh and the console is working for Domain Users. I am trying to get AD Samba auth working and have installed adbindproxy-5.3.0. When I run adbindproxy.pl but I get an error Get Domain SID failed. Please try again with authentication and a valid DC.
OS: centos 7
adinfo (CentrifyDC 5.3.1-398)
adbindproxy.pl (CentrifyDC-adbindproxy 5.3.0-504)
adinfo -T
Domain Diagnostics:
Domain: ou.ad3.ucdavis.edu
DNS query for: _ldap._tcp.ou.ad3.ucdavis.edu
DNS query for: _gc._tcp.ou.ad3.ucdavis.edu
Testing Active Directory connectivity:
Domain Controller: xxxxx.ou.ad3.ucdavis.edu
ldap: 389/tcp - good
ldap: 389/udp - good
smb: 445/tcp - good
kdc: 88/tcp - good
kpasswd: 464/tcp - good
ntp: 123/udp - good
Domain Controller: xxxxx.ou.ad3.ucdavis.edu
ldap: 389/tcp - good
ldap: 389/udp - good
smb: 445/tcp - good
kdc: 88/tcp - good
kpasswd: 464/tcp - good
ntp: 123/udp - good
Domain Controller: xxxxxx.ou.ad3.ucdavis.edu
ldap: 389/tcp - good
ldap: 389/udp - timeout
smb: 445/tcp - good
kdc: 88/tcp - good
kpasswd: 464/tcp - good
ntp: 123/udp - good
Full output of proccess
Please specify Samba's path if it is not in [/usr/] :
Using (/usr/)
The Samba base path is : /usr/
Joined to Domain: ou.ad3.ucdavis.edu
Zone: Auto Zone
Do you want to leave and join to another domain? [N] :
Using (N)
Remove Winbind settings (if any) from /etc/nsswitch.conf.
No Winbind settings found.
Removing old state files...
Please specify the stock samba winbindd listen path(dir) if it is not in [/run/samba/winbindd] :
Using (/run/samba/winbindd)
Updating smb.conf with Centrify recommended settings...
Connection failed: NT_STATUS_NOT_SUPPORTED
Get Domain SID failed. Please try again with authentication and a valid DC.
Enter the Active Directory authorized user [Administrator] : xxxxxxxx
Using (admin-cns)
Enter a valid domain controller [xxxxx.ou.ad3.ucdavis.edu] :
Using (xxxxxx.ou.ad3.ucdavis.edu)
Get Domain SID failed. Please try again with authentication and a valid DC.
Enter the Active Directory authorized user [admin-cns] :