Welcome, Guest. Please login or register.
Did you miss your activation email?
Tuesday 26 November 2024, 04:31:08 am

Login with username, password and session length

The Latest Endian Firewall is now available for download HERE
14261 Posts in 4377 Topics by 6517 Members
Latest Member: Sandro
Search:     Advanced search
+  EFW Support
|-+  Support
| |-+  EFW SMTP, HTTP, SIP, FTP Proxy Support
| | |-+  Proxy - Join Domain Problem
0 Members and 1 Guest are viewing this topic. « previous next »
Pages: [1] Go Down Print
Author Topic: Proxy - Join Domain Problem  (Read 26199 times)
mmy
Jr. Member
*
Offline Offline

Posts: 5


« on: Tuesday 16 June 2009, 03:14:35 pm »

Hi ,
I need windows authentication for proxy server .
My configuration like this pic :

After click Join Domain button , give this error :
Clock skew is too great. Make shure the Firewall as well as the PDC have a valid NTP (Network Time Protocol) setup.

DC Server and Endian have same clock time .
Also i added Host IP address , Hostname , Domain name for DC Server in Host configuration , but dont add anything in DNS server .
Please help me .
Logged
davvidde
Full Member
***
Offline Offline

Gender: Male
Posts: 68


« Reply #1 on: Wednesday 17 June 2009, 01:59:12 am »

Make sure you have added the Active Directory DNS server IP ADDRESS and domain name (not FQDN, only domain name) in PROXY->DNS->Custom nameserver.
Also you can try to join the domain by reading this: http://efwsupport.com/index.php?topic=3.0
Logged
mmy
Jr. Member
*
Offline Offline

Posts: 5


« Reply #2 on: Saturday 20 June 2009, 03:00:08 pm »

Hi ,
After reconfiguration and use this command :

net rpc join -w DOMAIN -U USERNAME

get this :

Joined domain DOMAIN .

when use this command :

net rpc info

Show this error :

Unable to find a suitable server .

also when use web based JOIN DOMAIN button , after wait 1min , show this error :

ads_connect: Preauthentication failed

Please help  Huh
Logged
npeterson
Full Member
***
Offline Offline

Posts: 90


« Reply #3 on: Wednesday 24 June 2009, 12:10:29 am »

Add your domain controller host names to the hosts file by going to Network -> Edit hosts.

Then setup your time servers by going to services -> time server Use the ip addresses for your domain controllers, make sure you set your correct time zone too.

Reboot and try adding again.

Logged
caua
Jr. Member
*
Offline Offline

Posts: 2


« Reply #4 on: Sunday 28 June 2009, 10:14:28 am »

I would like someone who has to use the Endian 2.2 Final with authentication with Windows to know magic. I am no expert, but looking for some information about this error "ads_connect: No such file or directory" I found this link http://www.mail-archive.com/samba @ lists.samba.org/msg65331.html where asks that veificado file "krb5.conf" in \ etc \. In this configuration file has a reference that does not understand;

[logging]
  default = FILE: / var/log/krb5libs.log
  KDC = FILE: / var/log/krb5kdc.log
  admin_server = FILE: / var / log / kadmind.log

Where
/ var/log/krb5libs.log, krb5kdc.log, kadmind.log no such files.

[KDC]
  profile = / var/kerberos/krb5kdc/kdc.conf

Where
/ var/kerberos/krb5kdc/kdc.conf, there is the "kerberos".

So how does it work? If someone has the magic Solbes, please please.
Logged
caua
Jr. Member
*
Offline Offline

Posts: 2


« Reply #5 on: Wednesday 01 July 2009, 12:06:49 pm »

Resolved

settings were wrong and had not restarted the proxy.
Logged
davvidde
Full Member
***
Offline Offline

Gender: Male
Posts: 68


« Reply #6 on: Friday 03 July 2009, 07:16:44 am »

Also check the time synchronization between the AD domain controller and EFW: I spent a lot of time to debug a rejected join when I realized that EFW was exactly one day forward.
Logged
ges35
Full Member
***
Offline Offline

Posts: 10


« Reply #7 on: Monday 19 October 2009, 01:57:45 am »

mmy, at you all is correct, as you have already subtilized in configs, try so:
1.reinstall efw
2.config interfaces
3.в the menu services-> time server-> config a time zone and time as on hours of a computer with which you are connected
4network->add host IP- dc-server-local.local
5proxy, correct, only in window Common domain settings it is necessary to write options not local.local and the domain name - local is simple

Good luck.
Logged
Pages: [1] Go Up Print 
« previous next »
Jump to:  

Page created in 0.109 seconds with 18 queries.
Powered by SMF 1.1 RC2 | SMF © 2001-2005, Lewis Media Design by 7dana.com