<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>question I hit this error while integration with Win AD, I tried to generate the service principals but the below error is a blocker in Support Questions</title>
    <link>https://community.cloudera.com/t5/Support-Questions/I-hit-this-error-while-integration-with-Win-AD-I-tried-to/m-p/352983#M236623</link>
    <description>&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;/opt/cloudera/cm/bin/gen_credentials_ad.sh failed with exit code 19 and output of &amp;lt;&amp;lt;&lt;BR /&gt;+ export PATH=/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/usr/kerberos/bin:/usr/kerberos/sbin:/usr/lib/mit/sbin:/usr/sbin:/usr/lib/mit/bin:/usr/bin&lt;BR /&gt;+ PATH=/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/usr/kerberos/bin:/usr/kerberos/sbin:/usr/lib/mit/sbin:/usr/sbin:/usr/lib/mit/bin:/usr/bin&lt;BR /&gt;+ KEYTAB_OUT=/var/run/cloudera-scm-server/cmf2077611128110226334.keytab&lt;BR /&gt;+ PRINC=HTTP/vsrisdxxxxx.mastnd.cloudera.XXXXX.local@XXXXXXXX.LOCAL&lt;BR /&gt;+ USER=syzutmdaGr&lt;BR /&gt;+ PASSWD=REDACTED&lt;BR /&gt;+ DELETE_ON_REGENERATE=false&lt;BR /&gt;+ SET_ENCRYPTION_TYPES=false&lt;BR /&gt;+ ENC_TYPES_MASK=24&lt;BR /&gt;+ USERACCOUNTCONTROL=66048&lt;BR /&gt;+ ACCOUNTEXPIRES=0&lt;BR /&gt;+ OBJECTCLASSES='objectClass: top&lt;BR /&gt;objectClass: person&lt;BR /&gt;objectClass: organizationalPerson&lt;BR /&gt;objectClass: user&lt;BR /&gt;'&lt;BR /&gt;+ DIST_NAME='CN=syzutmdaGr,OU=Cloudera-Accounts,OU=Accounts,OU=Teir 2,OU=Admin Teiring,DC=OneBank,DC=Local'&lt;BR /&gt;+ '[' -z /var/run/cloudera-scm-server/krb56173003423111410977.conf ']'&lt;BR /&gt;+ echo 'Using custom config path '\''/var/run/cloudera-scm-server/krb56173003423111410977.conf'\'', contents below:'&lt;BR /&gt;+ cat /var/run/cloudera-scm-server/krb56173003423111410977.conf&lt;BR /&gt;++ mktemp /tmp/cm_ldap.XXXXXXXX&lt;BR /&gt;+ LDAP_CONF=/tmp/cm_ldap.hyhwIy7R&lt;BR /&gt;+ echo 'TLS_REQCERT never'&lt;BR /&gt;+ echo 'sasl_secprops minssf=0,maxssf=0'&lt;BR /&gt;+ SIMPLE_PWD_STR=&lt;BR /&gt;+ LDAP_URL=&lt;BR /&gt;+ '[' '' = '' ']'&lt;BR /&gt;+ kinit -k -t /var/run/cloudera-scm-server/cmf4742668277818245032.keytab cloudera-bindacc-svc@ONEBANK.LOCAL&lt;BR /&gt;+ LDAP_URL=ldap://vswimdad01.onebank.local:389&lt;BR /&gt;++ ldapsearch -LLL -H ldap://vsxxxxxx.xxxxxxxxx.local:389 -b 'OU=Cloudera-Accounts,OU=Accounts,OU=Teir 2,OU=Admin Teiring,DC=OneBank,DC=Local' userPrincipalName=HTTP/vsrisdxxxxx.mastnd.cloudera.XXXXX.local@XXXXXXXX.LOCAL&lt;BR /&gt;SASL/GSS-SPNEGO authentication started&lt;BR /&gt;SASL username: cloudera-XXXXXX-svc@XXXXX.LOCAL&lt;BR /&gt;SASL SSF: 256&lt;BR /&gt;SASL data security layer installed.&lt;BR /&gt;+ PRINC_SEARCH=&lt;BR /&gt;++ echo ''&lt;BR /&gt;++ sed -n '1 {h; $ !d}; $ {x; s/\n //g; p}; /^ / {H; d}; /^ /! {x; s/\n //g; p}'&lt;BR /&gt;+ RESULTS_UNWRAPPED=&lt;BR /&gt;+ echo “”&lt;BR /&gt;+ set +e&lt;BR /&gt;+ echo&lt;BR /&gt;+ grep -q userPrincipalName&lt;BR /&gt;+ '[' 1 -eq 0 ']'&lt;BR /&gt;+ set -e&lt;BR /&gt;+ '[' false = true ']'&lt;BR /&gt;+ ldapmodify -H ldap://vsxxxxxxx.onebank.local:389&lt;BR /&gt;++ echo 'objectClass: top&lt;BR /&gt;objectClass: person&lt;BR /&gt;objectClass: organizationalPerson&lt;BR /&gt;objectClass: user&lt;BR /&gt;'&lt;BR /&gt;++ sed /str/d&lt;BR /&gt;++ echo vsrisdxxxxx.mastnd.cloudera.XXXXX.local@XXXXXXXX.LOCAL&lt;BR /&gt;++ sed -e 's/\@XXXXXEBANK.LOCAL//g'&lt;BR /&gt;++ echo -n '"REDACTED"'&lt;BR /&gt;++ iconv -f UTF8 -t UTF16LE&lt;BR /&gt;++ base64 -w 0&lt;BR /&gt;SASL/GSS-SPNEGO authentication started&lt;BR /&gt;SASL username: cloudera-xxxxxxx-svc@XXXXBANK.LOCAL&lt;BR /&gt;SASL SSF: 256&lt;BR /&gt;SASL data security layer installed.&lt;BR /&gt;ldap_add: Constraint violation (19)&lt;BR /&gt;additional info: 000021C7: AtrErr: DSID-03200DF4, #1:&lt;BR /&gt;0: 000021C7: DSID-03200DF4, problem 1005 (CONSTRAINT_ATT_TYPE), data 0, Att 90303 (servicePrincipalName)k&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Tue, 21 Apr 2026 07:49:49 GMT</pubDate>
    <dc:creator>Moataz_Saeed</dc:creator>
    <dc:date>2026-04-21T07:49:49Z</dc:date>
    <item>
      <title>I hit this error while integration with Win AD, I tried to generate the service principals but the below error is a blocker</title>
      <link>https://community.cloudera.com/t5/Support-Questions/I-hit-this-error-while-integration-with-Win-AD-I-tried-to/m-p/352983#M236623</link>
      <description>&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;/opt/cloudera/cm/bin/gen_credentials_ad.sh failed with exit code 19 and output of &amp;lt;&amp;lt;&lt;BR /&gt;+ export PATH=/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/usr/kerberos/bin:/usr/kerberos/sbin:/usr/lib/mit/sbin:/usr/sbin:/usr/lib/mit/bin:/usr/bin&lt;BR /&gt;+ PATH=/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/usr/kerberos/bin:/usr/kerberos/sbin:/usr/lib/mit/sbin:/usr/sbin:/usr/lib/mit/bin:/usr/bin&lt;BR /&gt;+ KEYTAB_OUT=/var/run/cloudera-scm-server/cmf2077611128110226334.keytab&lt;BR /&gt;+ PRINC=HTTP/vsrisdxxxxx.mastnd.cloudera.XXXXX.local@XXXXXXXX.LOCAL&lt;BR /&gt;+ USER=syzutmdaGr&lt;BR /&gt;+ PASSWD=REDACTED&lt;BR /&gt;+ DELETE_ON_REGENERATE=false&lt;BR /&gt;+ SET_ENCRYPTION_TYPES=false&lt;BR /&gt;+ ENC_TYPES_MASK=24&lt;BR /&gt;+ USERACCOUNTCONTROL=66048&lt;BR /&gt;+ ACCOUNTEXPIRES=0&lt;BR /&gt;+ OBJECTCLASSES='objectClass: top&lt;BR /&gt;objectClass: person&lt;BR /&gt;objectClass: organizationalPerson&lt;BR /&gt;objectClass: user&lt;BR /&gt;'&lt;BR /&gt;+ DIST_NAME='CN=syzutmdaGr,OU=Cloudera-Accounts,OU=Accounts,OU=Teir 2,OU=Admin Teiring,DC=OneBank,DC=Local'&lt;BR /&gt;+ '[' -z /var/run/cloudera-scm-server/krb56173003423111410977.conf ']'&lt;BR /&gt;+ echo 'Using custom config path '\''/var/run/cloudera-scm-server/krb56173003423111410977.conf'\'', contents below:'&lt;BR /&gt;+ cat /var/run/cloudera-scm-server/krb56173003423111410977.conf&lt;BR /&gt;++ mktemp /tmp/cm_ldap.XXXXXXXX&lt;BR /&gt;+ LDAP_CONF=/tmp/cm_ldap.hyhwIy7R&lt;BR /&gt;+ echo 'TLS_REQCERT never'&lt;BR /&gt;+ echo 'sasl_secprops minssf=0,maxssf=0'&lt;BR /&gt;+ SIMPLE_PWD_STR=&lt;BR /&gt;+ LDAP_URL=&lt;BR /&gt;+ '[' '' = '' ']'&lt;BR /&gt;+ kinit -k -t /var/run/cloudera-scm-server/cmf4742668277818245032.keytab cloudera-bindacc-svc@ONEBANK.LOCAL&lt;BR /&gt;+ LDAP_URL=ldap://vswimdad01.onebank.local:389&lt;BR /&gt;++ ldapsearch -LLL -H ldap://vsxxxxxx.xxxxxxxxx.local:389 -b 'OU=Cloudera-Accounts,OU=Accounts,OU=Teir 2,OU=Admin Teiring,DC=OneBank,DC=Local' userPrincipalName=HTTP/vsrisdxxxxx.mastnd.cloudera.XXXXX.local@XXXXXXXX.LOCAL&lt;BR /&gt;SASL/GSS-SPNEGO authentication started&lt;BR /&gt;SASL username: cloudera-XXXXXX-svc@XXXXX.LOCAL&lt;BR /&gt;SASL SSF: 256&lt;BR /&gt;SASL data security layer installed.&lt;BR /&gt;+ PRINC_SEARCH=&lt;BR /&gt;++ echo ''&lt;BR /&gt;++ sed -n '1 {h; $ !d}; $ {x; s/\n //g; p}; /^ / {H; d}; /^ /! {x; s/\n //g; p}'&lt;BR /&gt;+ RESULTS_UNWRAPPED=&lt;BR /&gt;+ echo “”&lt;BR /&gt;+ set +e&lt;BR /&gt;+ echo&lt;BR /&gt;+ grep -q userPrincipalName&lt;BR /&gt;+ '[' 1 -eq 0 ']'&lt;BR /&gt;+ set -e&lt;BR /&gt;+ '[' false = true ']'&lt;BR /&gt;+ ldapmodify -H ldap://vsxxxxxxx.onebank.local:389&lt;BR /&gt;++ echo 'objectClass: top&lt;BR /&gt;objectClass: person&lt;BR /&gt;objectClass: organizationalPerson&lt;BR /&gt;objectClass: user&lt;BR /&gt;'&lt;BR /&gt;++ sed /str/d&lt;BR /&gt;++ echo vsrisdxxxxx.mastnd.cloudera.XXXXX.local@XXXXXXXX.LOCAL&lt;BR /&gt;++ sed -e 's/\@XXXXXEBANK.LOCAL//g'&lt;BR /&gt;++ echo -n '"REDACTED"'&lt;BR /&gt;++ iconv -f UTF8 -t UTF16LE&lt;BR /&gt;++ base64 -w 0&lt;BR /&gt;SASL/GSS-SPNEGO authentication started&lt;BR /&gt;SASL username: cloudera-xxxxxxx-svc@XXXXBANK.LOCAL&lt;BR /&gt;SASL SSF: 256&lt;BR /&gt;SASL data security layer installed.&lt;BR /&gt;ldap_add: Constraint violation (19)&lt;BR /&gt;additional info: 000021C7: AtrErr: DSID-03200DF4, #1:&lt;BR /&gt;0: 000021C7: DSID-03200DF4, problem 1005 (CONSTRAINT_ATT_TYPE), data 0, Att 90303 (servicePrincipalName)k&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 21 Apr 2026 07:49:49 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Support-Questions/I-hit-this-error-while-integration-with-Win-AD-I-tried-to/m-p/352983#M236623</guid>
      <dc:creator>Moataz_Saeed</dc:creator>
      <dc:date>2026-04-21T07:49:49Z</dc:date>
    </item>
    <item>
      <title>Re: I hit this error while integration with Win AD, I tried to generate the service principals but the below error is a blocker</title>
      <link>https://community.cloudera.com/t5/Support-Questions/I-hit-this-error-while-integration-with-Win-AD-I-tried-to/m-p/381139#M244241</link>
      <description>&lt;P&gt;i am having the same error, can anyone help?&lt;/P&gt;</description>
      <pubDate>Fri, 22 Dec 2023 09:14:43 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Support-Questions/I-hit-this-error-while-integration-with-Win-AD-I-tried-to/m-p/381139#M244241</guid>
      <dc:creator>skylarblu4650</dc:creator>
      <dc:date>2023-12-22T09:14:43Z</dc:date>
    </item>
  </channel>
</rss>

