How to change (IPA or AD) domain admin user password stored with rhevm at the time of domain integration using rhevm-manage-domains command?

Solution Verified - Updated -


  • The password for the admin user on the IPA/AD server got expired and needed to be changed. We changed the password but RHEV still keeps using the old password. Where does RHEV locally store the domain admin password?

  • Unable to add new users from IPA/AD to RHEV, Trying to add a user in RHEV-M to assign roles fails with below error message in the logs.

ERROR [org.ovirt.engine.core.bll.adbroker.GSSAPIDirContextAuthenticationStrategy] (http- Error from Kerberos: Integrity check on decrypted field failed (31) - PREAUTH_FAILED
  • This issue started happening immediately after changing the password on the IPA/AD server for the user using which the domain was added to RHEVM by running rhevm-manage-domains.


  • Red Hat Enterprise Virtualization 3.X

Subscriber exclusive content

A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.

Current Customers and Partners

Log in for full access

Log In

New to Red Hat?

Learn more about Red Hat subscriptions

Using a Red Hat product through a public cloud?

How to access this content