On ti, 08 touko 2018, Nathan Brown via FreeIPA-users wrote:
When trying to establish an AD trust between IPA 4.5.4 and Samba
4.8.1
(MIT Kerberos), it fails with the following error:
[root@atlas5ipa samba]# ipa -vv trust-add ATLAS5.HPC
--range-type=ipa-ad-trust --two-way=true --admin=Administrator
--server dc.atlas5.hpc
Active Directory domain administrator's password:
ipa: ERROR: Insufficient access: CIFS server denied your credentials
Trust between
Samba 4.x and FreeIPA is not supported yet.
I have some patches in progress but not finished yet.
--
/ Alexander Bokovoy
Sr. Principal Software Engineer
Security / Identity Management Engineering
Red Hat Limited, Finland