adjoin fails with the following output:
Error: One or more of the following SPNs already associated with other account in the forest
host/
host/machine1
ftp/machine1.intra.yourcompany.com
ftp/machine1
Accounts that contain same SPNs are:
CN=machine2,OU=Servers,OU=Centrify,DC=intra,DC=yourcompany,DC=com
CN=machine3,OU=Servers,OU=Centrify,DC=intra,DC=yourcompany,DC=com
CN=machine4istprod1,OU=Servers,OU=Centrify,DC=intra,DC=yourcompany,DC=com
Each SPN must be unique across the forest. Please make sure the SPNs listed above are unique across the forest before joining.
Join to domain 'intra.yourcompany.com', zone 'machine1' failed.
adclient is in "Connected" mode but AD users still cannot login to the system.
The following message may be seen in the centrifydc.log file:
-------------------------------------------------------------------------------------------------------------------------------------
base.aduser Can't find service host/computer.lab.local. Run adinfo --diag to check for multiple computer accounts with the same SPN. Check that the local computer's Active Directory object's servicePrincipalName value has not been deleted. Check for replication errors.
-------------------------------------------------------------------------------------------------------------------------------------