Cannot Bind to Active Directory

Has anyone tried binding to AD? It fails on both Macs I have tried running 10.12 beta 1

It says the username and password are incorrect in the GUI.


in the Terminal...

cw-011-01:~ root# dsconfigad -a cw-011-01 -u admin -ou "CN=Computers,DC=snc,DC=ac,DC=uk" -domain company.com


dsconfigad: Invalid credentials supplied for binding to the server

Replies

Same here. Trying with Directory Utility, Terminal and Casper policy.


Also can't seem to get a kerberos ticket as Ticket Viewer keep crashing.


Bug report time.

Side note : But it *does* when binding to Open Directory. So it's not the whole directory stack that's broken.

I'm seeing the same issue and posted this under a different account. https://forums.developer.apple.com/thread/48696


I have a different AD based admin account that does work but haven't dug into the differences between our bind-only account and my elevated account.


Once bound the machine is working fine with AD based logins. Others have had success binding but getting errors when trying to log in against an AD account. There's definitley something amiss in the AD stack in this early build.

@eholtam - Seeing the same thing. We can bind machines, but can not log in with AD accounts afterwards. We only get a very non-specific error "Logging in to the account failed because an error occured"

I just submitted a "Serious Bug" (26863903) via bugreporter.apple.com and suggest all others experiencing this issue do as well.

Posted to OpenRadar as well


-Eric

@Kainushi - I am experiencing the same problem as well.

Which version of Windows Server are you running? I have found success with Server 2012 R2, but not iwth 2008 R2.

Binding and logins are fine on our network but the huge problem is Managed, Mobile accounts cannot be created. Only Network, Managed. This is a deal-breaker for our environment. We are running Server 2012 R2 as well. Previous post: https://forums.developer.apple.com/message/143555#143555