Forums

Resolved
0 votes
I'm trying to join a domain (with roaming profiles) but there is nowhere a good how-to. I never used PDC before so i'm a noob. What i want to try is to make here a how-to with your help. Maybe when we all are satisfied with it we can move this to the how-to section. So what are the steps?
Sunday, December 27 2009, 08:46 AM
Share this post:
Responses (43)
  • Accepted Answer

    Friday, January 18 2013, 10:49 AM - #Permalink
    Resolved
    0 votes
    The registery keys are:


    HKEY_LOCAL_MACHINE\SYSTEM\CURRENTCONTROLSET\SERVICES\LANMANWORKSTATION\PARAMETERS

    HKEY_LOCAL_MACHINE\SYSTEM\CURRENTCONTROLCSET\SERVICES\NETLOGON\PARAMETERS
    The reply is currently minimized Show
  • Accepted Answer

    Wasko Mass
    Wasko Mass
    Offline
    Thursday, January 17 2013, 10:52 PM - #Permalink
    Resolved
    0 votes
    you have to add both registry entries.
    The reply is currently minimized Show
  • Accepted Answer

    Nicklas
    Nicklas
    Offline
    Thursday, January 17 2013, 03:57 PM - #Permalink
    Resolved
    0 votes
    What do I do if I have SP1? I don't have the registers that http://wiki.samba.org/index.php/Windows7 says I shall change.
    The reply is currently minimized Show
  • Accepted Answer

    Wasko Mass
    Wasko Mass
    Offline
    Wednesday, January 02 2013, 11:50 PM - #Permalink
    Resolved
    0 votes
    Joining domain now worked for me! The client's OS is WIN XP. Defining the IP of the WINS-Server in /etc/samba/smb.conf did it for me.
    The reply is currently minimized Show
  • Accepted Answer

    Wasko Mass
    Wasko Mass
    Offline
    Monday, December 31 2012, 12:00 AM - #Permalink
    Resolved
    0 votes
    Please help me! I try to setup a COS 6.3 PDC (Gateway Mode) and can't join domain.
    Joining ends up with the above mentioned 0x0000232B RCODE_NAME_ERROR
    Which DNS entries have to be done?

    My configs of "IP", "Windows Networking", "Directory Server" and "DNS":

    IP

    Network Mode Gateway Mode
    Hostname wlserver1.my.lan
    Default Domain my.com

    eth0: External static (public IP) 80.xx.yy.zz (my.com)
    p8p1: LAN static 192.168.0.11 (my.lan)
    -----------------------------------------
    WINDOWS NETWORKING
    Server Name WLSERVER1
    Printing Disabled
    Home Directories Enabled
    WINS Support Enabled
    WINS Server

    Mode Primary Domain Controller / PDC
    Windows Domain CITY1
    Roaming Profiles Enabled
    Logon Drive U:
    Logon Script logon.cmd
    -------------------------------------
    DIRECTORY SERVER
    Mode Standalone
    Base Domain my.lan
    Publish Policy Local Network
    ------------------------------
    DNS
    IP 192.168.0.11
    Hostname: wlserver1.my.lan
    ALIAS #1: my.lan
    ----------------------------

    thx
    The reply is currently minimized Show
  • Accepted Answer

    zhia c
    zhia c
    Offline
    Friday, October 14 2011, 07:39 AM - #Permalink
    Resolved
    0 votes
    hi all ..

    i'm still new with ClearOS, and i try to create PDC Server by clearos
    im already setup the clearos pdc like picture i attach

    http://i53.tinypic.com/23wurg5.jpg

    but i still cant join domain from my laptop
    here is the error messege while im try to join the PDC domain

    Note: This information is intended for a network administrator. If you are not your network's administrator, notify the administrator that you received this information, which has been recorded in the file C:\WINDOWS\debug\dcdiag.txt.

    The domain name TERMINIX might be a NetBIOS domain name. If this is the case, verify that the domain name is properly registered with WINS.

    If you are certain that the name is not a NetBIOS domain name, then the following information can help you troubleshoot your DNS configuration.

    The following error occurred when DNS was queried for the service location (SRV) resource record used to locate a domain controller for domain TERMINIX:

    The error was: "DNS name does not exist."
    (error code 0x0000232B RCODE_NAME_ERROR)

    The query was for the SRV record for _ldap._tcp.dc._msdcs.TERMINIX

    Common causes of this error include the following:

    - The DNS SRV record is not registered in DNS.

    - One or more of the following zones do not include delegation to its child zone:

    TERMINIX
    . (the root zone)

    For information about correcting this problem, click Help.


    Case closed - i find the problem, its because the switch firewall block it *damn
    The reply is currently minimized Show
  • Accepted Answer

    Saturday, March 12 2011, 05:20 PM - #Permalink
    Resolved
    0 votes
    You should be done. This is a normal error message you get from Windows 7. What is going on here is that when you join the Windows domain, Windows 7 is trying to create a reverse DNS record with an active directory method. Since we don't do that you get the error. That being said, it should be still joined to the domain.

    From the sambawiki:
    You will receive one warning about DNS domain name configuration after the join has succeeded:
    "Changing the Primary Domain DNS name of this computer to "" failed.
    The name will remain "MYDOM". The error was:

    The specified domain either does not exist or could not be contacted"
    This warning can be ignored or silenced with setting other registry keys.


    If you really don't want to see this error, or if you need to create workstation images that are immune to that error, there is a hotfix to Windows 7 that fixes this.

    You can validate the computer account by running the following from command line which lists all the computer accounts in the directory:

    slapcat -n3|grep ou=Computers
    The reply is currently minimized Show
  • Accepted Answer

    Eli
    Eli
    Offline
    Saturday, March 12 2011, 03:13 PM - #Permalink
    Resolved
    0 votes
    Alright, I am still tinkering with this.. I have a Win 7 Pro workstation I'm trying to join to my ClearOs 5.2 PDC

    The domain name is MCCOMBSHOME (McCombs being my last name)

    I entered in on the win 7 pro machine under the user credentials
    Username: MCCOMBSHOME\winadmin
    password: (winadmins password)

    The normal window came up saying welcome to the domain

    after clicking okay there was another window that came up saying this

    Changing the Primary Domain DNS name of this computer to "" failed.
    The name will remain "MCCOMBSHOME"
    The error was:

    The specified domain either does not exist or could not be contacted.

    so am I in? or is there something more that I need to do? Just a little confused as to why it would welcome me to the domain and then give me an error such as this

    Thanks in advance everyone!

    ~Eli
    The reply is currently minimized Show
  • Accepted Answer

    Thursday, January 20 2011, 07:28 AM - #Permalink
    Resolved
    0 votes
    If you are using COS as Gateway then you have 2 networks that should be different in structure PLEASE NOTE they cannot be the same structure issues will follow if that is the case.

    The External and Internal Network.

    The External can be used as Alt DNS on a windows Client I find this allows Outlook to collect mail from Online Server.
    The IP address for the Server COS is the Preferred DNS as well as the Gateway.
    The reply is currently minimized Show
  • Accepted Answer

    Wednesday, January 19 2011, 09:52 PM - #Permalink
    Resolved
    0 votes
    it really depends on if the pdc is your gateway or not but I set mine up to have one of both if not, pdc local ip on top and gateway local ip on bottom of the windows dns settings, and make sure the pdc can get out to the internet it always helps.
    The reply is currently minimized Show
  • Accepted Answer

    Garrick
    Garrick
    Offline
    Wednesday, January 19 2011, 09:30 PM - #Permalink
    Resolved
    0 votes
    What are you guys using for DNS? I'm stuck on the client finding the ClearOS box.

    On Windows XP Pro:

    An error occurred when DNS was queried for the service location (SRV) resource record used to locate a domain controller for domain su.dc.
    The reply is currently minimized Show
  • Accepted Answer

    Friday, January 07 2011, 08:46 AM - #Permalink
    Resolved
    0 votes
    In the process of setting up the system ClearOS 5.2,

    After Installation and setting up the system for the First time, 1 need to go onto the Firewall and enable or add Firewall rules for instance I had to add Weconfig as well as https, http as this allows for the system to function.

    Guys lets get that How done as I was ready to Give up and go back to Zentyal and ClearOs is far easier to work with. So how do we start the process as a Doc? I can host it.
    The reply is currently minimized Show
  • Accepted Answer

    Tuesday, January 04 2011, 12:05 PM - #Permalink
    Resolved
    0 votes
    Good People..

    New discoveries today, I have come to realise that the when you change your Domain it actually matters that you get you CAPS "lock on" as when makes a hell of a difference with you get a Client joining. Trial and error a great teacher.
    The reply is currently minimized Show
  • Accepted Answer

    Monday, January 03 2011, 04:24 PM - #Permalink
    Resolved
    0 votes
    After several LDAP restart I am able to join the domain.

    Steps followed though.

    On the client machine I looked for the server "ClearOS" via network places
    When I found it, I login then logout and disconnected the drive, I have a shared drive called Software. The I went through the domain registration process and "voila" now we do more
    The reply is currently minimized Show
  • Accepted Answer

    Monday, January 03 2011, 04:11 PM - #Permalink
    Resolved
    0 votes
    Thank you my Bro, I will keep at it though still if new dev come will post
    The reply is currently minimized Show
  • Accepted Answer

    Monday, January 03 2011, 04:09 PM - #Permalink
    Resolved
    0 votes
    Im not near my CC box today to walk you through the steps sorry, someone else might be by later
    The reply is currently minimized Show
  • Accepted Answer

    Monday, January 03 2011, 04:08 PM - #Permalink
    Resolved
    0 votes
    1 thing for sure the domain is broadcasting as it give me the option to authenticate but it does not recognise the username and password yet they are correct as I can even use them to log onto the ClearOS machine.
    The reply is currently minimized Show
  • Accepted Answer

    Monday, January 03 2011, 04:06 PM - #Permalink
    Resolved
    0 votes
    domain: ssb
    The reply is currently minimized Show
  • Accepted Answer

    Monday, January 03 2011, 04:02 PM - #Permalink
    Resolved
    0 votes
    one thig make sure the domain is correct, syntex also DOMAIN is not domain ??
    The reply is currently minimized Show
  • Accepted Answer

    Monday, January 03 2011, 04:00 PM - #Permalink
    Resolved
    0 votes
    Thanks Todd, I am running XP Pro and yes i have created a user on the ClearOS and made that user as an domain_admins and still that does not work using that username and password. I did create the password after installation as required hence this is bugging me
    The reply is currently minimized Show
  • Accepted Answer

    Monday, January 03 2011, 03:54 PM - #Permalink
    Resolved
    0 votes
    After reading your post my first thoughts are as you already know windows home does not log into a domain, only XP pro also the user on the windows xp machine is not necessarily the user on the domain server, you first have to create an account on the clearos server under directory/users then log in with that name and password, hope this helps
    The reply is currently minimized Show
  • Accepted Answer

    Monday, January 03 2011, 03:15 PM - #Permalink
    Resolved
    0 votes
    Ok Guys, I have used Windows Server 2003 and Zentyal 2.0 and now I am keen on Clear OS, joining an XP Pro machine on to a domain by Clear OS is not straight forward, I have gone through threads and threads to see if I am going wrong anywhere. I have done all the steps as the How to that was to be done, I setup the PDC then on client go through the registration until when it get to the last logon screen when after the name of the PC and the Domain (this will also indicate whether the PDC is broadcasting and yet I get the authentication Window then I use the name that is the admin and the password then error bad username and password I then use root as the the password then same thing, go and use winadmin as username still, where am I going wrong

    Is there a general username? that I must use with the that "password" "winadmin password"
    The reply is currently minimized Show
  • Accepted Answer

    Monday, January 03 2011, 02:36 PM - #Permalink
    Resolved
    1 votes
    Hi there

    Need your help urgently I have finally managed to get the ClearOS 5.2 install and configured to a point but I am unable to register an XP machine to the domain. I have registered myself as an Admin as well but I am unable to register a machine on the domain it keeps telling me that my username and password is Bad please help

    I have used, root, my logon winadmin and nothing works
    Please help
    The reply is currently minimized Show
  • Accepted Answer

    jlrichar
    jlrichar
    Offline
    Monday, May 10 2010, 08:21 PM - #Permalink
    Resolved
    0 votes
    I have a vista client that is part of the domain that I will be upgrading to windows 7. Has anyone done this? Anything I should look out for, or do I simply upgrade, and then perform the 3 registry edits mentioned above?
    The reply is currently minimized Show
  • Accepted Answer

    Sunday, May 09 2010, 07:00 PM - #Permalink
    Resolved
    0 votes
    Not that i'm aware of sorry, those variants really were removed of their domain membership facilities

    You can still connect to domain (ClearOS PDC) shares with valid ClearOS user credentials. These are required when you first try to access it, but you cannot join the machine to the domain. Just remember to enter them in the format of "DOMAIN\username"

    This isn't a huge problem for small networks, as it's relatively easy to manage a few local user accounts on each machine
    The reply is currently minimized Show
  • Accepted Answer

    Sunday, May 09 2010, 05:36 PM - #Permalink
    Resolved
    0 votes


    Note that all Windows XP, Vista or 7 Home variants CANNOT join a domain.



    Surely to god there must be a way around this for Windows Hista Home. Either using a hack or some other software that forces the computer to join a domain on startup???
    :S
    Please help!

    I have an XP Home machine and Vista Home machine to get onto my home server :(
    The reply is currently minimized Show
  • Accepted Answer

    jlrichar
    jlrichar
    Offline
    Friday, April 23 2010, 07:00 PM - #Permalink
    Resolved
    0 votes
    Anyone have success joining OpenSuse to the Domain via the YAST2 GUI? I have tried a few things--but am unable to get it to work.

    OpenSuse would make a fantastic client for clear. Would really like to get this to work without poking around under the hood.

    The idea is to have a primarily windows network, with Linux clients mixed in, and the potential to dual boot Linux clients on all windows clients with transparent access to flexshares, and home folders, and networked computer shares.
    The reply is currently minimized Show
  • Accepted Answer

    jlrichar
    jlrichar
    Offline
    Friday, April 23 2010, 06:56 PM - #Permalink
    Resolved
    0 votes
    For transferring profiles from one domain to another on the same client I found the ForensIT tool to work very well.

    See This post:

    http://www.clearfoundation.com/component/option,com_kunena/Itemid,232/catid,18/func,view/id,6352/
    The reply is currently minimized Show
  • Accepted Answer

    Wednesday, March 17 2010, 11:27 PM - #Permalink
    Resolved
    0 votes
    I don't know CC4.3 or any CC but I would have guessed that if you use the same domain name and you copy users folders over to the new machine then it should work. You might have to add the new ClearOS server as a BDC first and then promote it to PDC when everything is replicated??? Does that make sense?
    The reply is currently minimized Show
  • Accepted Answer

    jlrichar
    jlrichar
    Offline
    Sunday, February 28 2010, 02:07 AM - #Permalink
    Resolved
    0 votes
    I asked this in another thread--but this seems like the correct one to ask it in.

    I am trying to move from cc4.3 PDC to a new clear 5.1PDC. I bought new HW and installed clear on it. I have it configured fine, and I can join clients to it. However, I would like the clients (mostly win xp and vista) to be able to re-use there current domain profiles that they used for the 4.3 based domain.

    I am not using roaming profiles--so this might be more of a windows question than a clear question. But I am sure there must be others in the same boat.

    Any help is much appreciated. And thanks for the PDC how too!!!
    The reply is currently minimized Show
  • Accepted Answer

    Tuesday, January 12 2010, 11:15 PM - #Permalink
    Resolved
    0 votes
    I was interested in setting up clearOS as a file storage server for users on a local domain, thought Id share my notes. This is very strait forward with no alterations on either my pc or the server.

    I first set up a user account and password
    Then I set up samba or as its known here Windows settings as a PDC

    My Windows domain is ENTERPRISE
    My Windows NS Look ups is enterprise.domain
    Logon script is logon.cmd
    Roaming profiles are enabled
    Logon drive is U

    List of shares are the standard homes, netlogon, profiles

    After setting this up I rebooted the server made sure that samba started and it did

    From my vista PC I changed under system properties /computer name to join the domain ENTERPRISE , the standard name and password box popped up and I put in the user name and pass I set up earlier

    I then rebooted my pc and the login to Enterprise was on the screen at bootup as expected

    I logged into the domain with the same user name and password from before and a new desktop was set up as expected

    I browsed to my computer and saw that my a new drive U appeared and my user folder was changed to username.enterprise

    I looked at my System Properties Advanced Desktop logins and sure enough my roaming profile was listed

    I went one step further and actually set up my profile and relocated all of my user folders to that drive just like I would on a 2003 or 2007 server.

    Everything works as expected without any issues with Windows Vista Ultimate

    I also set up a my laptop with windows xp home addition to use that as a work group
    I browsed through the network clicked on my user folder and added the name and password and was able to get into it from that pc fine

    As previously noted in several other posts I could not repeat the domain login with windows 7

    I hope this helps
    The reply is currently minimized Show
  • Accepted Answer

    Wednesday, January 06 2010, 10:45 PM - #Permalink
    Resolved
    0 votes
    Thank you for that.
    I'm not using Vista or 7 so that doesn't apply to me. I've managed to set up PDC, I've joined a Win XP to the domain and made it give me a home drive and through the logon.bat I made it give me a shared drive, like a public share for the group. I've set up a printer on it and set the printer up on a XP machine so it's basically doing everything I want. next step would be to check if it's possible to rsync to ClearOS boxes. In that way that it doesn't matter on which end the file is changed it replicates in both directions, is that possible?
    The reply is currently minimized Show
  • Accepted Answer

    Wednesday, January 06 2010, 05:05 PM - #Permalink
    Resolved
    0 votes
    If anyone dislikes dabbling with the registry, you can simply install the following registry file to add the two registry parameters required for Windows 7 to join the ClearOS domain :)

    http://starlane.gotdns.org/files/Windows7DomainFix.reg
    (right click save as, then double click and click OK to install items to registry. Don't trust anything you find on the net so open and review it first)
    The reply is currently minimized Show
  • Accepted Answer

    Tuesday, January 05 2010, 03:05 PM - #Permalink
    Resolved
    0 votes
    Wow, that was a quick reply. Thank you very much.
    I tried that earlier but didn't succeed. But I tried it again and of course it worked.
    Thank you for your help.
    The reply is currently minimized Show
  • Accepted Answer

    Tuesday, January 05 2010, 02:56 PM - #Permalink
    Resolved
    0 votes
    Odinn Burkni Helgason wrote:
    Hi all of you.
    I found this thread and thought it might help me set up a PDC. I stranded because I don't see the same thing on my server as the picture that Marcel van Leeuwen posted. You can see what I see in the attached picture.

    Am I missing something? What did I do wrong in the setup?
    It's set up in Gateway mode if that matters. It's ClearOS 5.1. I've set the same thing up on 3 boxes, and all show the same pic under Windows networking.

    Hmmm... thought I could upload a png file with it but it doesn't seem so...
    Anyway. The only thing I see are fields to put in information how to connect to Windows LDAP server but I want this to be a PDC not join a Windows domain.

    Ok. Here the pic comes. It was a little bit to big... 173kb... the max is 150... http://www.clearfoundation.com/media/kunena/attachments/legacy/images/ClearOSWebGUI.png


    You must enter the winadmin password. After that has been done the rest of the configuration will open up to you.
    The reply is currently minimized Show
  • Accepted Answer

    Tuesday, January 05 2010, 02:45 PM - #Permalink
    Resolved
    0 votes
    Hi all of you.
    I found this thread and thought it might help me set up a PDC. I stranded because I don't see the same thing on my server as the picture that Marcel van Leeuwen posted. You can see what I see in the attached picture.

    Am I missing something? What did I do wrong in the setup?
    It's set up in Gateway mode if that matters. It's ClearOS 5.1. I've set the same thing up on 3 boxes, and all show the same pic under Windows networking.

    Hmmm... thought I could upload a png file with it but it doesn't seem so...
    Anyway. The only thing I see are fields to put in information how to connect to Windows LDAP server but I want this to be a PDC not join a Windows domain.

    Ok. Here the pic comes. It was a little bit to big... 173kb... the max is 150... http://www.clearfoundation.com/media/kunena/attachments/legacy/images/ClearOSWebGUI.png
    The reply is currently minimized Show
  • Accepted Answer

    Sunday, December 27 2009, 08:14 PM - #Permalink
    Resolved
    0 votes
    Hi!

    I knew it that someone will ask me about these icons :). In early stage of new clearfoundation website/forum there was an option in "My Profile Info". Apparently Forum Admin decided to turn this feature off.

    P.S. Call me Piotr :)
    The reply is currently minimized Show
  • Accepted Answer

    Sunday, December 27 2009, 05:09 PM - #Permalink
    Resolved
    0 votes
    Thanks Tim Burgess for your explanation and input. Lots of stuff to study

    :)
    The reply is currently minimized Show
  • Accepted Answer

    Sunday, December 27 2009, 05:07 PM - #Permalink
    Resolved
    0 votes
    Hi Piotr Smalira

    Thanks for your explanation and input!

    I do not now Linux / ClearOS good enough (still learning) to solve this by my self. It is very appreciated.

    :)

    btw Piotr Smalira the tree little icon under your profile how do you do it?


    Piotr Smalira wrote:
    Hi Marcel!


    P.S. I'm still working with your previous problem (java app with 8080 port). I will focus on it when I will have more free time.
    The reply is currently minimized Show
  • Accepted Answer

    Sunday, December 27 2009, 02:35 PM - #Permalink
    Resolved
    0 votes
    Good idea to get a howto going, this topic appears to create some confusion for those not familiar with Windows domain environments (i'm not entirely clued up myself). Creating the domain and Primary Domain Controller 'PDC' is the easy bit from within the ClearOS webconfig.

    An important step when creating your domain, is to define a user who will be member of the 'Domain Admins' group. This user is then used to join other client machines to the Domain. This is acheived by selecting the correct group tick box when creating the users. All other users are then part of the 'Domain Users' group and should be used to login to client machines.

    (This can also be acheived by the inbuilt 'winadmin' user, password needs to be set from the webconfig , Windows Settings page)

    To join client PC's to a domain, depends on your client OS...and varies a little. See the following, (substituting your Domain Admin user credentials when adding the system to the domain). The end goal is then being able to login using DOMAIN\user with userpassword on ANY machine, and if you have roaming profiles the same desktop / documents etc.

    Note that all Windows XP, Vista or 7 Home variants CANNOT join a domain.

    CLIENT OS's
    XP and Windows Server 2003
    http://support.microsoft.com/kb/295017
    Vista
    http://windows.microsoft.com/en-us/windows-vista/Connect-your-computer-to-a-domain
    Windows 7 - see Marcels post above for registry edits required to join samba 3.4.3
    http://windows.microsoft.com/en-US/windows7/Connect-your-computer-to-a-domain
    For other Linux distro's with Samba, most will include some form of network configuration utility that will handle all the config for you (consult your distro docs)...however for manual samba domain membership configuration read the following
    http://us1.samba.org/samba/docs/man/Samba-HOWTO-Collection/domain-member.html
    Some other useful links...becoming an Active Directory Domain MEMBER server for Fedora
    http://docs.fedoraproject.org/deployment-guide/f12/en-US/html/s2-samba-domain-member.html
    RHEL4/5
    http://www.redhat.com/docs/manuals/enterprise/RHEL-4-Manual/en-US/Reference_Guide/s2-samba-domain-member.html


    Domains - mark2...Active Directory, is the advancement in Domain technology moving away from traditional PDC/BDC roles and to a hierarchy of mirrored machines containing user database information with variying 'trust' relationships organised by 'organisational units'. If you are interested in this part, then check out the Samba4 thread in the forum for the latest alpha build testing :) to better understand the terminology and how to organise you network topology see the very informative:-
    http://en.wikipedia.org/wiki/Active_Directory
    To better understand what Active Directory is and how that differs from PDC/BDC roles
    http://en.wikipedia.org/wiki/Primary_Domain_Controller
    http://en.wikipedia.org/wiki/Backup_Domain_Controller
    The reply is currently minimized Show
Your Reply