Skip to main content
ggolubovic
Staff & Editor
Staff & Editor
March 27, 2025

Troubleshooting Tip: FortiAuthenticator cannot be joined to a Windows Server 2022 domain controller

  • March 27, 2025
  • 0 replies
  • 646 views
Description

This article describes how to handle a FortiAuthenticator which occurs when attempting to join a domain where the Domain Controller is Windows Server 2022.

The following error is visible in FortiAuthenticator:

 

netadsjoin: Failed to join domain: failed to lookup DC info for domain <DOMAIN> over rpc: Indicates a referenced username and authentication information are valid, but some user account restriction has prevented successful authentication (such as time-of-day restrictions).

Scope FortiAuthenticator 6.6.x.
Solution

Disable DNSSEC on Windows Server 2022 DNS settings.

 

DNSSEC_DISABLED.png