question

87011702 avatar image
0 Votes"
87011702 asked ElevenYu-MSFT commented

GSMA for windows container

I have set up a virtual lab environment on Azure with 4 VMs
I have created a dev.onmicrosoft.com domain and joined all the VMs to it

DC – Windows Server 2019 Datacenter acting as a domain controller

VM1– Windows Server 2019 Datacenter with Containers
VM2– Windows 10 with Containers
VM3– Windows 10 with Containers
VM4– Windows 10 with Containers

I created GSMA account and was able to install and test the service.
when using the credspec file in VM1,VM2,VM3,VM4 I was able to see containers are domain-joined but when doing the same in Domain Controller it throwing an error ERROR_NO_TRUST_LSA_SECRET.
Can someone help to resolve this issue?
Thanks

windows-server-2019
5 |1600 characters needed characters left characters exceeded

Up to 10 attachments (including images) can be used with a maximum of 3.0 MiB each and 30.0 MiB total.

1 Answer

ElevenYu-MSFT avatar image
0 Votes"
ElevenYu-MSFT answered ElevenYu-MSFT commented

Hi,

Thank you for posting your question to Q&A forum.

Are you talking about Group Managed Service Accounts (gMSA) or anything else?

For Group Managed Service Accounts, I'd like to suggest that you could read below articles for step-by-step instructions and background information.

Getting Started with Group Managed Service Accounts
Create the Key Distribution Services KDS Root Key
Configuring Kerberos delegation for group Managed Service Accounts
Step-by-Step: How to work with Group Managed Service Accounts (gMSA)

If not gMSA but Azure related problem, please kindly post it to the Azure forum for further help. Appreciate your understanding.


Hope the above information could help you.

Thanks,


If the Answer is helpful, please click "Accept Answer" and upvote it. Thanks.

· 2
5 |1600 characters needed characters left characters exceeded

Up to 10 attachments (including images) can be used with a maximum of 3.0 MiB each and 30.0 MiB total.

yes I am talking about Group Managed Service Accounts.
My problem is when I am trying to run a container inside the domain controller getting an error ERROR_NO_TRUST_LSA_SECRET.
Is domain controller not supported?

0 Votes 0 ·

Hi,

Did you mean the Azure Containers?

If so, please kindly post the issue to the Azure forum or contact Azure support. Thanks.


0 Votes 0 ·