Tips for finding Knowledge Articles

  • - Enter just a few key words related to your question or problem
  • - Add Key words to refine your search as necessary
  • - Do not use punctuation
  • - Search is not case sensitive
  • - Avoid non-descriptive filler words like "how", "the", "what", etc.
  • - If you do not find what you are looking for the first time,reduce the number of key words you enter and try searching again.
  • - Minimum supported Internet Explorer version is IE9
Home  >
article

KB-6353: The adauto.pl Script Does Not Allow Automount Maps To Be Inherited By Child Zones That Are In A Different Domain Than The Parent

9 March,16 at 11:05 PM

Applies to:
 
Centrify Server Suite 5.2.1 - 5.2.3

Problem:

The auto mount script (/usr/share/centrifydc/etc/adauto.pl) assumes the zone hierarchy is in the same Active Directory domain. If the automount maps are defined in the parent zone, the child zone in a different domain cannot read nor inherit the automount maps.

Cause:
 
The adauto.pl script does not check if the parent zone is from the same domain as the joined domain.  If the child zone is in a different domain, the script fails because there is no binding to the parent domain.

Workaround:
 
1) Modify the /usr/share/centrifydc/etc/adauto.pl script

2) Locate the line:
bind -machine [adinfo domain]
 
3) Add another line below it:
bind -machine <parentDomain>

This gives the adauto.pl a binding to the parent domain.

Resolution:

Resolved in Suite 2016.  The adauto.pl script is redesigned to call /etc/share/centrifydc/adedit/adlistnismaps. This script provides the code to bind to the parent domain.

Still have questions? Click here to log a technical support case, or collaborate with your peers in Centrify's Online Community.