在仅使用RODC的CIFS环境中、Kerberos通信无法正常工作
适用场景
- ONTAP 9
- CIFS
- Domain Controller(域控制器)(DC)
- ReadOnlyDC (RODC)
- ReadWriteDC (RDC)
- Kerberos
- 隔离区(DMZ)
问题描述
- 在仅使用RODC的CIFS环境中、Kerberos通信无法正常工作
secd: secd.unexpectedFailure:debug: vserver (<vserver>) Unexpected failure. Error: Lookup of CIFS account SID procedure failed
Successfully connected to ip <rodc>, port 445 using TCP
Improper format of Kerberos configuration file (KRB5_CONFIG_BADFORMAT)
Failed to initiate Kerberos authentication. Trying NTLM.
Encountered NT error (NT_STATUS_MORE_PROCESSING_REQUIRED) for SMB command SessionSetup
Successfully authenticated with DC <rodc>
Could not find Windows SID '<sid>'
FAILURE: SID lookup failed