{"id":431,"date":"2020-11-07T15:28:43","date_gmt":"2020-11-07T14:28:43","guid":{"rendered":"http:\/\/www.gerjon.com\/?p=431"},"modified":"2020-11-07T17:14:58","modified_gmt":"2020-11-07T16:14:58","slug":"error-31-trying-to-join-vcenter-to-ad","status":"publish","type":"post","link":"https:\/\/www.gerjon.com\/?p=431","title":{"rendered":"VMware: Error trying to join vCenter to Active Directory"},"content":{"rendered":"\n<p><strong><span style=\"text-decoration: underline;\">Problem<\/span><\/strong><\/p>\n\n\n\n<p>I was trying to add my vCenter to my internal AD but I kept keeping the error that vCenter could not connect.<\/p>\n\n\n\n<p><em>ldm client exeption: Error trying to join AD, error code [40075], user [user], domain [domain], orgunit []<\/em><\/p>\n\n\n\n<figure class=\"wp-block-image size-large is-style-default\"><img data-recalc-dims=\"1\" loading=\"lazy\" decoding=\"async\" width=\"932\" height=\"500\" src=\"https:\/\/i0.wp.com\/www.gerjon.com\/wp-content\/uploads\/2020\/11\/vcenter-error-2-1024x549.jpg?resize=932%2C500&#038;ssl=1\" alt=\"\" class=\"wp-image-447\" srcset=\"https:\/\/i0.wp.com\/www.gerjon.com\/wp-content\/uploads\/2020\/11\/vcenter-error-2.jpg?resize=1024%2C549&amp;ssl=1 1024w, https:\/\/i0.wp.com\/www.gerjon.com\/wp-content\/uploads\/2020\/11\/vcenter-error-2.jpg?resize=300%2C161&amp;ssl=1 300w, https:\/\/i0.wp.com\/www.gerjon.com\/wp-content\/uploads\/2020\/11\/vcenter-error-2.jpg?resize=768%2C411&amp;ssl=1 768w, https:\/\/i0.wp.com\/www.gerjon.com\/wp-content\/uploads\/2020\/11\/vcenter-error-2.jpg?w=1148&amp;ssl=1 1148w\" sizes=\"auto, (max-width: 932px) 100vw, 932px\" \/><\/figure>\n\n\n\n<p><strong><span style=\"text-decoration: underline;\">Solution<\/span><\/strong><\/p>\n\n\n\n<p>First I checked if the domain was reachable via DNS from the vCenter server by connecting via SSH to the vCenter VM and pinging the domain.<\/p>\n\n\n\n<figure class=\"wp-block-image size-large is-style-default\"><img data-recalc-dims=\"1\" loading=\"lazy\" decoding=\"async\" width=\"663\" height=\"388\" src=\"https:\/\/i0.wp.com\/www.gerjon.com\/wp-content\/uploads\/2020\/11\/ping-dns-from-vcenter.jpg?resize=663%2C388&#038;ssl=1\" alt=\"\" class=\"wp-image-435\" srcset=\"https:\/\/i0.wp.com\/www.gerjon.com\/wp-content\/uploads\/2020\/11\/ping-dns-from-vcenter.jpg?w=663&amp;ssl=1 663w, https:\/\/i0.wp.com\/www.gerjon.com\/wp-content\/uploads\/2020\/11\/ping-dns-from-vcenter.jpg?resize=300%2C176&amp;ssl=1 300w\" sizes=\"auto, (max-width: 663px) 100vw, 663px\" \/><\/figure>\n\n\n\n<p>So there was no issues there, but i thought lets try the command line to see if we can add it like this. so I typed in the commands<\/p>\n\n\n\n<figure class=\"wp-block-table\"><table><tbody><tr><td><em>Shell<br>\/opt\/likewise\/bin\/domainjoin-cli join [domain] [user name] [password]<\/em><\/td><\/tr><\/tbody><\/table><\/figure>\n\n\n\n<p>where domain, user name and password of my own domain. I got an interesting error..<\/p>\n\n\n\n<figure class=\"wp-block-image size-large is-style-default\"><img data-recalc-dims=\"1\" loading=\"lazy\" decoding=\"async\" width=\"673\" height=\"167\" src=\"https:\/\/i0.wp.com\/www.gerjon.com\/wp-content\/uploads\/2020\/11\/putty-access.jpg?resize=673%2C167&#038;ssl=1\" alt=\"\" class=\"wp-image-436\" srcset=\"https:\/\/i0.wp.com\/www.gerjon.com\/wp-content\/uploads\/2020\/11\/putty-access.jpg?w=673&amp;ssl=1 673w, https:\/\/i0.wp.com\/www.gerjon.com\/wp-content\/uploads\/2020\/11\/putty-access.jpg?resize=300%2C74&amp;ssl=1 300w\" sizes=\"auto, (max-width: 673px) 100vw, 673px\" \/><\/figure>\n\n\n\n<p><em>Clock skew detected with active directory server.. <\/em><br>Ok so there&#8217;s a timing issue with the domain and the vcenter appliance&#8230;<\/p>\n\n\n\n<p>To resolve this you need to add NTP servers to the vCenter appliance!<\/p>\n\n\n\n<p>you must log on to the management portal :5480<br>And add the time servers there<\/p>\n\n\n\n<figure class=\"wp-block-image size-large is-style-default\"><img data-recalc-dims=\"1\" loading=\"lazy\" decoding=\"async\" width=\"932\" height=\"243\" src=\"https:\/\/i0.wp.com\/www.gerjon.com\/wp-content\/uploads\/2020\/11\/vcenter-time-settings-1-1024x267.jpg?resize=932%2C243&#038;ssl=1\" alt=\"\" class=\"wp-image-438\" srcset=\"https:\/\/i0.wp.com\/www.gerjon.com\/wp-content\/uploads\/2020\/11\/vcenter-time-settings-1.jpg?resize=1024%2C267&amp;ssl=1 1024w, https:\/\/i0.wp.com\/www.gerjon.com\/wp-content\/uploads\/2020\/11\/vcenter-time-settings-1.jpg?resize=300%2C78&amp;ssl=1 300w, https:\/\/i0.wp.com\/www.gerjon.com\/wp-content\/uploads\/2020\/11\/vcenter-time-settings-1.jpg?resize=768%2C200&amp;ssl=1 768w, https:\/\/i0.wp.com\/www.gerjon.com\/wp-content\/uploads\/2020\/11\/vcenter-time-settings-1.jpg?resize=1536%2C400&amp;ssl=1 1536w, https:\/\/i0.wp.com\/www.gerjon.com\/wp-content\/uploads\/2020\/11\/vcenter-time-settings-1.jpg?resize=2048%2C534&amp;ssl=1 2048w, https:\/\/i0.wp.com\/www.gerjon.com\/wp-content\/uploads\/2020\/11\/vcenter-time-settings-1.jpg?w=1864 1864w\" sizes=\"auto, (max-width: 932px) 100vw, 932px\" \/><\/figure>\n\n\n\n<p>After that double check your time settings on the VMware host(s) and the domain controller to see if they all point to the same (internal or external) NTP host<\/p>\n\n\n\n<p>On the domaincontroller you can use this command<\/p>\n\n\n\n<figure class=\"wp-block-table\"><table><tbody><tr><td>W32time \/query \/status<\/td><\/tr><\/tbody><\/table><\/figure>\n\n\n\n<p>It would give you something simelar to this:<\/p>\n\n\n\n<figure class=\"wp-block-image size-large is-style-default\"><img data-recalc-dims=\"1\" loading=\"lazy\" decoding=\"async\" width=\"780\" height=\"336\" src=\"https:\/\/i0.wp.com\/www.gerjon.com\/wp-content\/uploads\/2020\/11\/dns-from-dc.jpg?resize=780%2C336&#038;ssl=1\" alt=\"\" class=\"wp-image-440\" srcset=\"https:\/\/i0.wp.com\/www.gerjon.com\/wp-content\/uploads\/2020\/11\/dns-from-dc.jpg?w=780&amp;ssl=1 780w, https:\/\/i0.wp.com\/www.gerjon.com\/wp-content\/uploads\/2020\/11\/dns-from-dc.jpg?resize=300%2C129&amp;ssl=1 300w, https:\/\/i0.wp.com\/www.gerjon.com\/wp-content\/uploads\/2020\/11\/dns-from-dc.jpg?resize=768%2C331&amp;ssl=1 768w\" sizes=\"auto, (max-width: 780px) 100vw, 780px\" \/><\/figure>\n\n\n\n<p>and on the VMware host you need to check:<\/p>\n\n\n\n<figure class=\"wp-block-image size-large is-style-default\"><img data-recalc-dims=\"1\" loading=\"lazy\" decoding=\"async\" width=\"932\" height=\"415\" src=\"https:\/\/i0.wp.com\/www.gerjon.com\/wp-content\/uploads\/2020\/11\/vmware-host-ntp-1-1024x456.jpg?resize=932%2C415&#038;ssl=1\" alt=\"\" class=\"wp-image-442\" srcset=\"https:\/\/i0.wp.com\/www.gerjon.com\/wp-content\/uploads\/2020\/11\/vmware-host-ntp-1.jpg?resize=1024%2C456&amp;ssl=1 1024w, https:\/\/i0.wp.com\/www.gerjon.com\/wp-content\/uploads\/2020\/11\/vmware-host-ntp-1.jpg?resize=300%2C134&amp;ssl=1 300w, https:\/\/i0.wp.com\/www.gerjon.com\/wp-content\/uploads\/2020\/11\/vmware-host-ntp-1.jpg?resize=768%2C342&amp;ssl=1 768w, https:\/\/i0.wp.com\/www.gerjon.com\/wp-content\/uploads\/2020\/11\/vmware-host-ntp-1.jpg?resize=1536%2C684&amp;ssl=1 1536w, https:\/\/i0.wp.com\/www.gerjon.com\/wp-content\/uploads\/2020\/11\/vmware-host-ntp-1.jpg?w=1781&amp;ssl=1 1781w\" sizes=\"auto, (max-width: 932px) 100vw, 932px\" \/><\/figure>\n\n\n\n<p>pro tip: Also check if the NTP service is running, if it is stopped as it was on my hosts you can start it via: <br><\/p>\n\n\n\n<figure class=\"wp-block-image size-large is-style-default\"><img data-recalc-dims=\"1\" loading=\"lazy\" decoding=\"async\" width=\"932\" height=\"299\" src=\"https:\/\/i0.wp.com\/www.gerjon.com\/wp-content\/uploads\/2020\/11\/VMWare-host-ntp-client-1024x329.jpg?resize=932%2C299&#038;ssl=1\" alt=\"\" class=\"wp-image-443\" srcset=\"https:\/\/i0.wp.com\/www.gerjon.com\/wp-content\/uploads\/2020\/11\/VMWare-host-ntp-client.jpg?resize=1024%2C329&amp;ssl=1 1024w, https:\/\/i0.wp.com\/www.gerjon.com\/wp-content\/uploads\/2020\/11\/VMWare-host-ntp-client.jpg?resize=300%2C96&amp;ssl=1 300w, https:\/\/i0.wp.com\/www.gerjon.com\/wp-content\/uploads\/2020\/11\/VMWare-host-ntp-client.jpg?resize=768%2C247&amp;ssl=1 768w, https:\/\/i0.wp.com\/www.gerjon.com\/wp-content\/uploads\/2020\/11\/VMWare-host-ntp-client.jpg?resize=1536%2C494&amp;ssl=1 1536w, https:\/\/i0.wp.com\/www.gerjon.com\/wp-content\/uploads\/2020\/11\/VMWare-host-ntp-client.jpg?resize=2048%2C659&amp;ssl=1 2048w, https:\/\/i0.wp.com\/www.gerjon.com\/wp-content\/uploads\/2020\/11\/VMWare-host-ntp-client.jpg?w=1864 1864w\" sizes=\"auto, (max-width: 932px) 100vw, 932px\" \/><\/figure>\n\n\n\n<p>So after checking and changing the NTP settings on the domain controller, VMware hosts and vCenter i once again tried to connect to the domain through SSH.<\/p>\n\n\n\n<figure class=\"wp-block-image size-large is-style-default\"><img data-recalc-dims=\"1\" loading=\"lazy\" decoding=\"async\" width=\"932\" height=\"131\" src=\"https:\/\/i0.wp.com\/www.gerjon.com\/wp-content\/uploads\/2020\/11\/vcenter-domain-join-succes.jpg?resize=932%2C131&#038;ssl=1\" alt=\"\" class=\"wp-image-444\" srcset=\"https:\/\/i0.wp.com\/www.gerjon.com\/wp-content\/uploads\/2020\/11\/vcenter-domain-join-succes.jpg?w=958&amp;ssl=1 958w, https:\/\/i0.wp.com\/www.gerjon.com\/wp-content\/uploads\/2020\/11\/vcenter-domain-join-succes.jpg?resize=300%2C42&amp;ssl=1 300w, https:\/\/i0.wp.com\/www.gerjon.com\/wp-content\/uploads\/2020\/11\/vcenter-domain-join-succes.jpg?resize=768%2C108&amp;ssl=1 768w\" sizes=\"auto, (max-width: 932px) 100vw, 932px\" \/><\/figure>\n\n\n\n<p>And it worked :-). Don&#8217;t forget to reboot vCenter to let it authenticate to the Active Directory domain in the correct way!<\/p>\n\n\n\n<figure class=\"wp-block-image size-large is-style-default\"><img data-recalc-dims=\"1\" decoding=\"async\" src=\"https:\/\/i0.wp.com\/memegenerator.net\/img\/instances\/65181089.jpg?w=932&#038;ssl=1\" alt=\"\"\/><\/figure>\n\n\n\n<p>(thanks to memegenerator.net for the meme that captured my feelings best)<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Problem I was trying to add my vCenter to my internal AD but I kept keeping the error that vCenter could not connect. ldm client exeption: Error trying to join AD, error code [40075], user &hellip;<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_monsterinsights_skip_tracking":false,"_monsterinsights_sitenote_active":false,"_monsterinsights_sitenote_note":"","_monsterinsights_sitenote_category":0,"jetpack_post_was_ever_published":false,"_jetpack_newsletter_access":"","_jetpack_dont_email_post_to_subs":false,"_jetpack_newsletter_tier_id":0,"_jetpack_memberships_contains_paywalled_content":false,"_jetpack_memberships_contains_paid_content":false,"footnotes":"","jetpack_publicize_message":"","jetpack_publicize_feature_enabled":true,"jetpack_social_post_already_shared":true,"jetpack_social_options":{"image_generator_settings":{"template":"highway","default_image_id":0,"font":"","enabled":false},"version":2}},"categories":[14],"tags":[],"class_list":["post-431","post","type-post","status-publish","format-standard","hentry","category-vmware"],"jetpack_publicize_connections":[],"jetpack_featured_media_url":"","jetpack_shortlink":"https:\/\/wp.me\/p59CpB-6X","jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/www.gerjon.com\/index.php?rest_route=\/wp\/v2\/posts\/431","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.gerjon.com\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.gerjon.com\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.gerjon.com\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.gerjon.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=431"}],"version-history":[{"count":0,"href":"https:\/\/www.gerjon.com\/index.php?rest_route=\/wp\/v2\/posts\/431\/revisions"}],"wp:attachment":[{"href":"https:\/\/www.gerjon.com\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=431"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.gerjon.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=431"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.gerjon.com\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=431"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}