[1-day-delivery] Troubleshoot Active Directory authentication for SQL Server on Linux and Docker

Title: [1-day-delivery] Troubleshoot Active Directory authentication for SQL Server on Linux and Docker
Category: 1-day-delivery
Tag(s): SQL Server, Troubleshoot, Connectivity, Active Directory, Linux, Docker
Description: You want to troubleshoot and fix Active Directory authentication for SQL Server on Linux and Docker.

Common Issue(s)

  • Windows NT user or group CONTOSO\user not found
  • Could not look up short domain name due to error
  • Could not perform rDNS lookup for host due to error
  • FQDN not returned by rDNS lookup
  • Failed to bind to LDAP server
  • Key table entry not found
  • No key table entry found for
  • Request ticket server not found in keytab (ticket kvno )
  • Request ticket server kvno found in keytab but not with enctype
  • Request ticket server kvno enctype found in keytab but cannot decrypt ticket

Management

  • Fixed-time: 1 working day(s)
  • Fixed-scope: 1-10 logins
  • Fixed-price: $100

Work Breakdown

  • Verify DNS and reverse DNS lookups
  • Check the keytab file and permissions
  • Validate realm information in krb5.conf
  • Tracing Kerberos
  • Enable Kerberos and security-based PAL logging

Out of Scope

  • Root Cause Analysis (RCA)

Deliverable(s)

  • Quick fix only
  • You should be able to log in using the credentials.

Prerequisite(s)

  • Database server access
  • Screen sharing, if applicable