When I try to join a Samba 3.0.8 to a Win 2000 server it complains: Administrator's password: [1901/12/26 12:25:31, 0] libads/kerberos.c:ads_kinit_password(146) kerberos_kinit_password Administrator@HUFSD failed: Cannot resolve network address for KDC in requested realm [1901/12/26 12:25:31, 0] utils/net_ads.c:ads_startup(186) ads_connect: Cannot resolve network address for KDC in requested realm [1901/12/26 12:25:31, 0] rpc_client/cli_netlogon.c:cli_nt_setup_creds(256) cli_nt_setup_creds: request challenge failed [1901/12/26 12:25:31, 0] rpc_client/cli_netlogon.c:cli_nt_setup_creds(256) cli_nt_setup_creds: request challenge failed [1901/12/26 12:25:31, 0] utils/net_rpc_join.c:net_rpc_join_newstyle(319) Error domain join verification (reused connection): NT_STATUS_INVALID_COMPUTER_NAME Unable to join domain HUFSD. I don't care if I join the HUFSD domain with my Samba server ...but I would like to only have to add a user once. I have sycronization turned on while using webmin which means I don't have to create a user twice for unix and samba, but the Win 2000 server is in charge of the domain and then complains the the user cannot logon to the domain because I haven't added the user to the Win 2000 server? I do not understand. If my Samba server has to join the HUFSD domain, how do I tell the Samba server about kerberos ...and then do I still have to add users twice?