*Puppet Version:*This is spin-off ticket of PUP-7326. *Puppet Server Version:* *OS Name/VersionSteps to reproduce:* # Setup Active Directory with Domain Functional level 2016 Describe your issue # Spin up a Win2012R2 machine and connect to AD # Create a test user (e.q. testadmin1) in as much detail as possible… Active Directory Describe steps # Add testadmin1 user to reproduce… local administrators group in Win2012R2 # Delete testadmin1 user in AD *Desired Behavior # Run {code:*java} *Actual Behaviorpuppet apply -e "group {'Administrators':* members => ['Administrator'], auth_membership => true }"{code}
Please takeOr # Setup Active Directory with Domain Functional level 2012 R2 # Spin up a moment Win2016 machine and attach any relevant log output and/or manifests connect to AD # Create a test user (e. This will help us immensely when troubleshooting the issueq. testadmin1) in Active Directory # Add testadmin1 user to local administrators group in Win2016 Examples: # Delete testadmin1 user in AD # Run puppet agent with --test --trace --debug {code:java} Relevant sections ofpuppet apply -e "group {'Administrators': members => ['Administrator'], auth_membership => true }{/var/log/puppetlabs/puppetserver/puppetserver.logcode}} or any applicable logs from the same directory
Puppet apply returns error below
!Screen Shot 2019-04-03 at 11.44.28 AM.png!
For more detailed information turn upNote the server logs by upping error occurs only on Windows client machine with condition its OS version is different with the log AD Domain Functional level in the server's logback.xml
Relevant sections of configurations files (puppet E.conf, hieraq.conf, Server's conf Client OS Win2012R connected to AD Domain Functional level 2016 or Client OS Win2016 connected to AD Domain Functional level 2012R2.d, defaults/sysconfig)
For memory issues with server heap dumps are also helpful.
!Screen Shotimage- 2019-04-03 at 1105-10-41-13-985.44.28 AM.png!
Note the error occurs only on Windows client machine with condition its OS version is different with the AD Domain Functional level. E.q. Client OS Win2012R connected to AD Domain Functional level 2016 or Client OS Win2016 connected to AD Domain Functional level 2012R2.
*Steps to reproduce:* # Setup Active Directory with Domain Functional level 2016 # Spin up a Win2012R2 machine and connect to AD # Create a test user (e.q. testadmin1) in Active Directory # Add testadmin1 user to local administrators group in Win2012R2 # Delete testadmin1 user in AD # Run {code:java}puppet apply -e "group {'Administrators': members => ['Administrator'], auth_membership => true }"{code}
Or # Setup Active Directory with Domain Functional level 2012 R2 # Spin up a Win2016 machine and connect to AD # Create a test user (e.q. testadmin1) in Active Directory # Add testadmin1 user to local administrators group in Win2016 # Delete testadmin1 user in AD # Run {code:java}puppet apply -e "group {'Administrators': members => ['Administrator'], auth_membership => true }{code}
Puppet apply returns error below
!image-2019-04-05-10-41-13-985.png!
Note the error occurs only on Windows client machine with condition its OS version is different with the AD Domain Functional level. E.q. Client OS Win2012R connected to AD Domain Functional level 2016 or Client OS Win2016 connected to AD Domain Functional level 2012R2.
*Steps to reproduce:* # Setup Active Directory with Domain Functional level 2016 # Spin up a Win2012R2 machine and connect to AD # Create a test user (e.q. testadmin1) in Active Directory # Add testadmin1 user to local administrators group in Win2012R2 # Delete testadmin1 user in AD # Run {code:java}puppet apply -e "group {'Administrators': members => ['Administrator'], auth_membership => true }"{code}
Or # Setup Active Directory with Domain Functional level 2012 R2 # Spin up a Win2016 machine and connect to AD # Create a test user (e.q. testadmin1) in Active Directory # Add testadmin1 user to local administrators group in Win2016 # Delete testadmin1 user in AD # Run {code:java}puppet apply -e "group {'Administrators': members => ['Administrator'], auth_membership => true }{code}
Puppet apply returns error below
!image-2019-04-05-10-41-13-985.png|thumbnail!
Note the error occurs only on Windows client machine with condition its OS version is different with the AD Domain Functional level. E.q. Client OS Win2012R connected to AD Domain Functional level 2016 or Client OS Win2016 connected to AD Domain Functional level 2012R2.
*Steps to reproduce:* # Setup Active Directory with Domain Functional level 2016 # Spin up a Win2012R2 machine and connect to AD # Create a test user (e.q. testadmin1) in Active Directory # Add testadmin1 user to local administrators group in Win2012R2 # Delete testadmin1 user in AD # Run {code:java}puppet apply -e "group {'Administrators': members => ['Administrator'], auth_membership => true }"{code}
Or # Setup Active Directory with Domain Functional level 2012 R2 # Spin up a Win2016 machine and connect to AD # Create a test user (e.q. testadmin1) in Active Directory # Add testadmin1 user to local administrators group in Win2016 # Delete testadmin1 user in AD # Run {code:java}puppet apply -e "group {'Administrators': members => ['Administrator'], auth_membership => true }{code}
Puppet apply returns error below
!image-2019-04-05-10-41-13-985.png|thumbnail!
Note the error occurs only on Windows client machine with condition its OS version is different with the AD Domain Functional level. E.q. Client OS Win2012R connected to AD Domain Functional level 2016 or Client OS Win2016 connected to AD Domain Functional level 2012R2.
*Steps to reproduce:* # Setup Active Directory with Domain Functional level 2016 # Spin up a Win2012R2 machine and connect to AD # Create a test user (e.q. testadmin1) in Active Directory # Add testadmin1 user to local administrators group in Win2012R2 # Delete testadmin1 user in AD # Run {code:java}puppet apply -e "group {'Administrators': members => ['Administrator'], auth_membership => true }"{code}
Or # Setup Active Directory with Domain Functional level 2012 R2 # Spin up a Win2016 machine and connect to AD # Create a test user (e.q. testadmin1) in Active Directory # Add testadmin1 user to local administrators group in Win2016 # Delete testadmin1 user in AD # Run {code:java}puppet apply -e "group {'Administrators': members => ['Administrator'], auth_membership => true }{code}
Puppet apply returns error below
!image-2019-04-05-10-41-13-985.png|thumbnail!
Note the error occurs only on Windows client machine with condition its OS version is different with the AD Domain Functional level. E.q. Client OS Win2012R connected to AD Domain Functional level 2016 or Client OS Win2016 connected to AD Domain Functional level 2012R2.
JANELLE JAMES Hi. You changed the status of this ticket to 'needs information'. We are experiencing this issue and I think i can provide all required information.