On ti, 08 touko 2018, Nathan Brown via FreeIPA-users wrote:
When trying to establish an AD trust between IPA 4.5.4 and Samba 4.8.1 (MIT Kerberos), it fails with the following error:
[root@atlas5ipa samba]# ipa -vv trust-add ATLAS5.HPC --range-type=ipa-ad-trust --two-way=true --admin=Administrator --server dc.atlas5.hpc Active Directory domain administrator's password:
ipa: ERROR: Insufficient access: CIFS server denied your credentials
Trust between Samba 4.x and FreeIPA is not supported yet. I have some patches in progress but not finished yet.