Hi all,

I just completed setting up DSfW. I am able to join workstations to the domain, however I cannot login with users that existed before the DSfW install. New users in the same container work without issue. The preexisting users do have the "sAMAccountName" and "supplementalCredentials" attributes, so it seems they were samified.

A kinit of one of the preexisting users returns: "kinit(v5): Preauthentication failed while getting initial credentials."

The only snag I ran into during the provisioning happened during the samifying process. Directly after this message "All the objects under this domain are now samified" I started getting these errors:

"The AD keys are missing for user , Creating Attempt #0
SASL username: gidNumber=0+uidNumber=0,cn=peercred,cn=external,cn =auth

That continued until attempt 29 when I restarted the xad services. After that it claims that the post-check of container objects samification passed and it finished out the provisioning.

Please let me know if I should post any additional info.