adcli join should not re-register, if the host is already known to AD
Submitted by Mikhail T.
Assigned to Stef Walter
Description
We are trying to use adcli to obtain keytabs for hundreds of hosts. Most of the hosts are already registered (although we may not have their keytabs), but some aren't.
It seems like the only way to obtain a host's keytab is by "join"-ing it (again) -- which updates AD changing the kvno, among other things.
Is this really necessary? Can't the join simply use the existing record -- and its kvno -- to generate a new keytab?