Centrify DirectControl, Centrify Identity Service, Mac Edition
KB-1209: adjoin -s adds dns.dc entry to centrifydc.conf
Applies to: DirectControl 4.0.x - 4.4.x running on all platforms
adclient has a problem with failover to another domain controller if the domain controller that it is currently connected to is either decommissioned or is having problems.
The reason may be that there is a spurious dns.dc entry in the /etc/centrifydc/centrifydc.conf file. The entry may be there if you've have run adjoin with the -s option or may have been added manually.
Remove the dns.dc entry from centrifydc.conf and run adreload.
To check if you have a dns.dc entry pointing to the decommissioned / problem domain controller, run the following command: