Getting Kerberos to run in a .local domain
I am trying to set up a Mac 10.5.8 Server as an Open Directory Master and utilize Kerberos. Unfortunately, I am running into nothing but problems. I am in a primarily Windows environment that is running a Windows 2003 AD domain. All DNS is handled by the Windows servers. Unfortunately, the AD domain is set up as "domainname.local" and it is not an option to rename it. My Mac server is correctly set up in DNS as "macsrv01.domainname.local". The server was set up as "Advanced Server".
Issuing the “hostname” command returns “macsrv01.domainname.local”.
Issuing “host macsrv01.domainname.local” returns the correct IP address.
Issuing host "ipaddress" returns domain name pointer “macsrv01.domainname.local”.
Issuing “changeip –checkhostname” returns the correct info and "The names match. There is nothing to change."
The problem I am running into is this: When I go to promote the server from "Standalone Server" to "Open Directory Master" I never get prompted to enter a Kerberos realm. I first get asked to create the Master Domain Administrator account. I enter this information and click "Continue". I am then taken to a screen that says: "This server will become an Open Directory Master." This screen also lists:
Name: Directory Administrator
Short Name: diradmin
User ID: 1000
Password: --------
However, there is nothing else on this screen other than the "Continue" button. There is nowhere to enter the Kerberos realm info.
When I click "Continue" I get a new screen saying: "This server has been configured as an Open Directory Master." However, when I check the overview screen, it shows:
LDAP Server is: Running
Password Server is: Running
Kerberos is: Stopped
Also, there is no button to try and start Kerberos.
Does anyone have any suggestions on how I can get Kerberos to start?
I am guessing my problems have to do with the fact I am part of a .local domain. However, I thought I had read that this was no longer supposed to be an issue after Mac Server OS 10.5.5. Has anyone ever gotten Kerberos to start in a .local domain? Any help would be appreciated.
MacBook Pro, Mac OS X (10.6.5)