Replication to a Windows 2008 R2 fails

David Gonzalez info at dghvoip.com
Wed Sep 15 13:01:02 MDT 2010


Hi, hope this one doesn't go like my other questions unanswered.

I'm trying to join a second DC to my domain and it's a w2k8 machine, dcpromo
went well, I added the A record and objectguid as instructed to my zone
which looks like this after samba_dnsupdate modified it:

[root at gateway ~]# cat /usr/local/samba/private/dns/samba.dghvoip.com.zone
$ORIGIN .
$TTL 604800     ; 1 week
samba.dghvoip.com       IN SOA  samba.dghvoip.com. hostmaster. (
                                2010091545 ; serial
                                172800     ; refresh (2 days)
                                14400      ; retry (4 hours)
                                3628800    ; expire (6 weeks)
                                604800     ; minimum (1 week)
                                )
                        NS      gateway.samba.dghvoip.com.
$TTL 600        ; 10 minutes
                        A       192.168.254.1
                        A       192.168.254.160
$ORIGIN _msdcs.samba.dghvoip.com.
$TTL 900        ; 15 minutes
0a791213-cbd0-4986-b5fa-a1ac0c0cb43f CNAME gateway.samba.dghvoip.com.
$TTL 600        ; 10 minutes
9b5d4b4c-57b6-47f5-a0d9-845ce8b224c2 CNAME VMW2K8.samba.dghvoip.com.
$ORIGIN _tcp.Default-First-Site-Name._sites.dc._msdcs.samba.dghvoip.com.
_kerberos               SRV     0 100 88 VMW2K8.samba.dghvoip.com.
                        SRV     0 100 88 gateway.samba.dghvoip.com.
_ldap                   SRV     0 100 389 VMW2K8.samba.dghvoip.com.
                        SRV     0 100 389 gateway.samba.dghvoip.com.
$ORIGIN _tcp.dc._msdcs.samba.dghvoip.com.
_kerberos               SRV     0 100 88 VMW2K8.samba.dghvoip.com.
                        SRV     0 100 88 gateway.samba.dghvoip.com.
_ldap                   SRV     0 100 389 VMW2K8.samba.dghvoip.com.
                        SRV     0 100 389 gateway.samba.dghvoip.com.
$ORIGIN _msdcs.samba.dghvoip.com.
_ldap._tcp.e408cc52-b98b-4d00-9a38-3e38653d2a2f.domains SRV 0 100 389
VMW2K8.samba.dghvoip.com.
                        SRV     0 100 389 gateway.samba.dghvoip.com.
gc                      A       192.168.254.160
$ORIGIN gc._msdcs.samba.dghvoip.com.
_ldap._tcp.Default-First-Site-Name._sites SRV 0 100 3268
VMW2K8.samba.dghvoip.com.
                        SRV     0 100 3268 gateway.samba.dghvoip.com.
_ldap._tcp              SRV     0 100 3268 VMW2K8.samba.dghvoip.com.
                        SRV     0 100 3268 gateway.samba.dghvoip.com.
$ORIGIN _msdcs.samba.dghvoip.com.
$TTL 900        ; 15 minutes
_ldap._tcp.pdc          SRV     0 100 389 gateway.samba.dghvoip.com.
$ORIGIN _tcp.Default-First-Site-Name._sites.samba.dghvoip.com.
$TTL 600        ; 10 minutes
_gc                     SRV     0 100 3268 VMW2K8.samba.dghvoip.com.
                        SRV     0 100 3268 gateway.samba.dghvoip.com.
_kerberos               SRV     0 100 88 VMW2K8.samba.dghvoip.com.
                        SRV     0 100 88 gateway.samba.dghvoip.com.
_ldap                   SRV     0 100 389 VMW2K8.samba.dghvoip.com.
                        SRV     0 100 389 gateway.samba.dghvoip.com.
$ORIGIN _tcp.samba.dghvoip.com.
_gc                     SRV     0 100 3268 VMW2K8.samba.dghvoip.com.
                        SRV     0 100 3268 gateway.samba.dghvoip.com.
_kerberos               SRV     0 100 88 VMW2K8.samba.dghvoip.com.
                        SRV     0 100 88 gateway.samba.dghvoip.com.
_kpasswd                SRV     0 100 464 VMW2K8.samba.dghvoip.com.
                        SRV     0 100 464 gateway.samba.dghvoip.com.
_ldap                   SRV     0 100 389 VMW2K8.samba.dghvoip.com.
                        SRV     0 100 389 gateway.samba.dghvoip.com.
$ORIGIN _udp.samba.dghvoip.com.
_kerberos               SRV     0 100 88 VMW2K8.samba.dghvoip.com.
                        SRV     0 100 88 gateway.samba.dghvoip.com.
_kpasswd                SRV     0 100 464 VMW2K8.samba.dghvoip.com.
                        SRV     0 100 464 gateway.samba.dghvoip.com.
$ORIGIN samba.dghvoip.com.
$TTL 1200       ; 20 minutes
DAVEPC                  A       192.168.254.2
$TTL 604800     ; 1 week
gateway                 A       192.168.254.1
$TTL 1200       ; 20 minutes
vmw2k8                  A       192.168.254.160
vmwin7                  A       192.168.254.93
vmwinxp                 A       192.168.254.95
$TTL 604800     ; 1 week
vpnserver               A       192.168.254.130
wifiap                  A       192.168.254.254

As you see records were added succesfully but this error is showing up on my
logs constamntly.

queued DsReplicaSync for CN=Configuration,DC=samba,DC=dghvoip,DC=com to
9b5d4b4c-57b6-47f5-a0d9-845ce8b224c2._msdcs.samba.dghvoip.com (urgent=true)
uSN=0:3896
started DsReplicaSync for DC=samba,DC=dghvoip,DC=com to
9b5d4b4c-57b6-47f5-a0d9-845ce8b224c2._msdcs.samba.dghvoip.com
dreplsrv_notify_schedule(5) scheduled for: Wed Sep 15 13:59:27 2010 COT
dreplsrv_notify: Failed to send DsReplicaSync to
9b5d4b4c-57b6-47f5-a0d9-845ce8b224c2._msdcs.samba.dghvoip.com for
DC=samba,DC=dghvoip,DC=com - NT code 0xc0002105 : WERR_DS_DRA_ACCESS_DENIED
started DsReplicaSync for
CN=Schema,CN=Configuration,DC=samba,DC=dghvoip,DC=com to
9b5d4b4c-57b6-47f5-a0d9-845ce8b224c2._msdcs.samba.dghvoip.com
dreplsrv_notify: Failed to send DsReplicaSync to
9b5d4b4c-57b6-47f5-a0d9-845ce8b224c2._msdcs.samba.dghvoip.com for
CN=Schema,CN=Configuration,DC=samba,DC=dghvoip,DC=com - NT code 0xc0002105 :
WERR_DS_DRA_ACCESS_DENIED
started DsReplicaSync for CN=Configuration,DC=samba,DC=dghvoip,DC=com to
9b5d4b4c-57b6-47f5-a0d9-845ce8b224c2._msdcs.samba.dghvoip.com
dreplsrv_notify: Failed to send DsReplicaSync to
9b5d4b4c-57b6-47f5-a0d9-845ce8b224c2._msdcs.samba.dghvoip.com for
CN=Configuration,DC=samba,DC=dghvoip,DC=com - NT code 0xc0002105 :
WERR_DS_DRA_ACCESS_DENIED

I'm using -d4 to see what's going on but can¡t seem to find a solution.

If anyone can help or if anymore info is required please ask.

Thank you

PD: Each tme I like samba even more and more.

---
... Chi va piano va sano e va lontano.
David Gonzalez H.
DGHVoIP - OPEN SOURCE TELEPHONY SOLUTIONS
Phone Bogotá: +(57-1)289-1168
Phone Medellin: +(57-4)247-0985
Mobile: +(57)315-838-8326
MSN: david at planetaradio.net
Skype: davidgonzalezh
WEB: http://www.dghvoip.com/
Linux User #294661


More information about the samba-technical mailing list