[Samba] Active Directory Domain Corruption.

Rowland Penny rpenny at samba.org
Tue May 31 13:13:56 UTC 2022


On Tue, 2022-05-31 at 08:39 -0400, Zombie Ryushu via samba wrote:
> I have unable to process any Domain Logins of any type on OpenSuse
> Leap 
> 15.3. I get an invalid SID error.
> This has been isolated to just one of my Domain Controllers. 
> Unfortunately, its my Primary Domain Controller.
> 
> Basically normal Samba and Domain AD Logins fail with
> 
> NT_STATUS_INVALID_SID
> 
> A Bug report has been opened at:
> 
> https://bugzilla.samba.org/show_bug.cgi?id=15079
> 
> Kerberos KDC and LDAP functionality still works, but not much else
> does. I believe that some sort of corruption has entered the
> database.
> My other two DCs are unaffected. Please review the errors in the bug
> reports and advise.

Please provide the output from 'testparm -s' as requested.

Also, you do not have a primary DC, you just have a DC that holds the
FSMO roles including the PDC_Emulator. If you have a problem with just
one DC, then demote it and add a new one, even if it is the DC holding
the FSMO roles.

Rowland





More information about the samba mailing list