This is a new installation of SLES 11 + OES 11 + dsfw

I have made the installation but didnt take any upgrade, dont know if this problem could be derived from that

In the first step I installed SLES , then OES (didnt select the dhcp thing) , provisioned the DSFW and all seems fine, I can join workstations and log into the domain

then I reconfigured the dsfw and added the dhcp, fighted a bit to get the dinamic dhcp updating zones but finnaly that is working

but I had a side effect, now I can not join new workstations to the domain, and also cant login from any of the previous joined workstations

xandctrl validate seem fine

polaris:~ # xadcntrl validate
Tree Name: NOBO
Server Name: .CN=polaris.OU=OESSystemObjects.dc=nobomega.dc=com .T=NOBO.
Binary Version: 20605.00
Root Most Entry Depth: 0
Product Version: eDirectory for Linux x86_64 v8.8 SP6 [DS]

Checking for nameserver BIND
number of zones: 2
debug level: 0
xfers running: 0
xfers deferred: 0
soa queries in progress: 0
query logging is OFF
recursive clients: 0/1000
tcp clients: 0/100
server is up and running
zone details are dumped at /var/opt/novell/log/named/named_zones.info
Checking for Name Service Cache Daemon: running
Checking for RPC Endpoint Mapper Service running
Checking for Kerberos KDC Service running
Checking for Kerberos Password Change Server running
Checking for Domain Services Daemon running
Checking for Samba NMB daemon running
Checking for Samba WINBIND daemon running
Checking for Samba SMB daemon running
Checking for service sshd running
Checking for rsync daemon: running
polaris:~ #

but rpcclient and kinit fails

polaris:~ # rpcclient -k localhost -c dsroledominfo
cli_session_setup_kerberos: spnego_gen_negTokenTarg failed: No credentials cache found
failed session setup with NT_STATUS_LOGON_FAILURE
Cannot connect to server. Error was NT_STATUS_LOGON_FAILURE

polaris:~ # kinit Administrator@nobomega.com
kinit(v5): Server not found in Kerberos database while getting initial credentials

I have been reading a lot of stuff but nothing points me on how to add the server to the kerberos database

I listed my service principals in ldap and seems fine

polaris:~ # LDAPCONF=/etc/opt/novell/xad/openldap/ldap.conf /usr/bin/ldapsearch -Y EXTERNAL -s base -b "cn=POLARIS,ou=Domain controllers,dc=nobomega,dc=com" -Z serviceprincipalname
SASL/EXTERNAL authentication started
SASL username: gidNumber=0+uidNumber=0,cn=peercred,cn=external,cn =auth
# extended LDIF
# LDAPv3
# base <cn=POLARIS,ou=Domain controllers,dc=nobomega,dc=com> with scope baseObject
# filter: (objectclass=*)
# requesting: serviceprincipalname

# POLARIS, Domain Controllers, nobomega.com
dn: cn=POLARIS,ou=Domain Controllers,dc=nobomega,dc=com
serviceprincipalname: DNS/polaris.nobomega.com/nobomega.com
serviceprincipalname: DNS/polaris.nobomega.com
serviceprincipalname: GC/polaris.nobomega.com/nobomega.com
serviceprincipalname: GC/polaris.nobomega.com
serviceprincipalname: HOST/polaris.nobomega.com/nobomega.com
serviceprincipalname: HOST/polaris.nobomega.com
serviceprincipalname: HOST/POLARIS
serviceprincipalname: HOST/polaris.nobomega.com/NOBOMEGA
serviceprincipalname: ldap/polaris.nobomega.com/nobomega.com
serviceprincipalname: ldap/polaris.nobomega.com
serviceprincipalname: ldap/POLARIS
serviceprincipalname: ldap/polaris.nobomega.com/NOBOMEGA
serviceprincipalname: ldap/fd81634e-5e47-11e1-b96b-441ea1528e30._msdcs.nobomeg
serviceprincipalname: E3514235-4B06-11D1-AB04-00C04FC2DCD2/fd81634e-5e47-11e1-

# search result
search: 3
result: 0 Success

# numResponses: 2
# numEntries: 1

polaris:~ # date
Mon Mar 5 20:05:08 CET 2012

polaris:~ # kinit administrator@nobomega.com
kinit(v5): Server not found in Kerberos database while getting initial credentials

polaris:~ # tail /var/opt/novell/xad/log/kdc.log
Mar 05 20:05:11 polaris krb5kdc[27493](info): AS_REQ (1 etypes {23}) SERVER_NOT_FOUND: administrator@nobomega.com for krbtgt/nobomega.com@nobomega.com, Server not found in Kerberos database

also I have read somthing about a krbtrt entry, but I cannot find it on the ldap nor in the iManager tree

any help greatly appreciated

Many Thanks