Ok, I removed the server from the domain by leaving the domain. By mistake I joined interlin.nl instead of ad.interlin.nl
ad.interlin.nl is running on another NS7 on my local network.
After leaving, I joined ad.interlin.nl but I still have the same error: AccountProvider_Error_82
/var/log/messages on the server that joined the domain is here: https://pastebin.com/bGzBpvER
I had to try a few times before the join succeeded. Therefor you see a failed in row #65 and #177
What troubles me is the multiple entries of:
fw admin-todos: (82) GSSAPI Error (init): Unspecified GSS failure. Minor code may provide more information
fw admin-todos: Server not found in Kerberos database
What does that mean? Something wrong with DNS settings?
/edit:
Maybe something that points to the problem:
When I do a klist on the server that joined the domain I get:
[root@fw ~]# klist
klist: Credentials cache keyring āpersistent:0:0ā not found
Seems trhe server doesnāt get a (valid) Kerberos token?
//edit:
Info from Domain Accounts looks good to me:
Domain ad.interlin.nl
NetBIOS domain name: INTERLIN
LDAP server: 192.168.10.6
LDAP server name: nsdc-ns7.ad.interlin.nl
Realm: AD.INTERLIN.NL
Bind Path: dc=AD,dc=INTERLIN,dc=NL
LDAP port: 389
Server time: Fri, 04 Aug 2017 20:41:11 CEST
KDC server: 192.168.10.6
Server time offset: 0
Last machine account password change: Fri, 04 Aug 2017 20:01:09 CEST
Join is OK
name: FW
objectSid: S-1-5-21-3689670861-2108593795-486037524-1113
accountExpires: 9223372036854775807
sAMAccountName: FW$
dNSHostName: fw.ad.interlin.nl
servicePrincipalName: HOST/FW
servicePrincipalName: HOST/fw.ad.interlin.nl
pwdLastSet: 131463432694462510
whenChanged: 20170804180109.0Z
lastLogon: 131463456721612810
distinguishedName: CN=FW,CN=Computers,DC=ad,DC=interlin,DC=nl