Mac OS X 10.3 or later: "Invalid user name and password combination" Message When Using Active Directory

When binding a Mac OS X client computer to Active Directory, the account entered is not validated (resolved) at that time. It is used as entered. If entered incorrectly, you will see an alert message later.
Symptom

After configuring the Active Directory Directory Access plug-in, an alert message appears at the client computer that says "invalid user name and password combination."

Solution

This happens when an incorrect name and/or password is entered, including a username entered with incorrect syntax.

The user's login name (also known as "PrincipalName") is required when binding a computer to Active Directory.

The user can also use the short part of the login name (such as "virginia"). The typical syntax of a login name is similar to "virginia@domain.forest.company.com".

Note: If the user's login name has been modified from the default "virginia@domain.forest.company.com", then the default login name must be used. The modified login name (such as "virginia@email.company.com") cannot be used.

Important: Information about products not manufactured by Apple is provided for information purposes only, and does not constitute Apple's recommendation or endorsement. Please contact the vendor for additional information.

Document 17159, "Locating Vendor Information" can help you search for a particular vendor's address and phone number.
Published Date: Oct 7, 2016