[Samba] Phantom DNS records visible with dig, but not samba-tool dns

ash-samba at comtek.co.uk ash-samba at comtek.co.uk
Mon Sep 12 20:21:09 UTC 2016


On 12/09/16 20:47, Rowland Penny via samba wrote:
> On Mon, 12 Sep 2016 15:41:24 -0400
> lingpanda101--- via samba <samba at lists.samba.org> wrote:
>
>> On 9/12/2016 3:23 PM, ash-samba--- via samba wrote:
>>> On 09/09/16 16:35, lingpanda101--- via samba wrote:
>>>> On 9/9/2016 10:59 AM, ash-samba--- via samba wrote:
>>>>> We appear to have some phantom DNS records on both our domain
[...]
>>>>> And to get it editable:
>>>>>
>>>>> ldbedit -e nano -H /usr/local/samba/private/sam.ldb --cross-ncs
>>>>> --show-binary -b
>>>>> 'DC=_ldap._tcp.pdc,DC=_msdcs.samdom.example.com,CN=MicrosoftDNS,DC=ForestDnsZones,DC=samdom,DC=example,DC=com'
>>>>> -s base
>>>>>
>>>>> All on one line, run on a DC.
>>>>>
>>>>> Rowland
>>>>>

Okay, thanks.

I'd love to know how it got into this state, though.

The idea of tampering with a potentially corrupt AD scares me; I think 
perhaps I'm going to snapshot the domain controllers before I do it!





More information about the samba mailing list