"Error: Clients may not be able to perform Kerberos authentication" displayed when joining the domain under IWA

"Error: Clients may not be able to perform Kerberos authentication" displayed when joining the domain under IWA

A successful lookup displays the following:
nslookup -type=SRV [DOMAIN NAME] [IP ADDRESS]
Server: UnKnown
Address: [IP ADDRESS]
 
[DOMAIN NAME]
primary name server = server. [DOMAIN NAME]
responsible mail addr = hostmaster. [DOMAIN NAME]
serial = 123
refresh = 900 (15 mins)
retry = 600 (10 mins)
expire = 86400 (1 day)
default TTL = 3600 (1 hour)
 
An unsuccessful lookup displays the following:
*** Can't find [DOMAIN NAME]: No answer

Resolution
In order to resolve this issue, follow the steps below.
  1. Open the DNS/Domain Controller server.
  2. Open the Server Manager.
  3. Open Tools and click DNS Forward Lookup Zones > Domain.
  4. Right click the domain and select New Host (A or AAAA).
  5. Type a name that matches the FQDN hostname for the proxy.
  6. Type the P1 interface IP address.
Do not select the two check boxes present in this selection.
  1. Click Add Host.
  2. Try to rejoin the domain again.