[Samba] Issues demoting a samba DC.

Michael Tokarev mjt at tls.msk.ru
Sun Jan 8 14:36:52 UTC 2023


08.01.2023 17:19, Michael Tokarev via samba wrote:
..
> I haven't found the string e3514235-4b06-11d1-ab04-00c04fc2dcd2 anywhere in
> /var/lib/samba/ or similar dirs, the only single mention of it is in
> private/spn_update_list:
> 
> # These are not supported yet:
> # NtFrs-88f5d2bd-b646-11d2-a6d3-00c04fc9b232/${HOSTNAME}
> # Dfsr-12F9A27C-BF97-4787-9364-D31B6C55EB04/${HOSTNAME}

This is all wrong. That's just too many digits, - I were searching
for a different string and pasting the wrong result.  This string
is actually one of SPNs for this DC (svdcm):

# samba-tool spn list svdcm\$
User CN=SVDCM,OU=Domain Controllers,DC=tls,DC=msk,DC=ru has the following servicePrincipalName:
	 HOST/SVDCM
	 HOST/svdcm.tls.msk.ru
	 GC/svdcm.tls.msk.ru/tls.msk.ru
	 E3514235-4B06-11D1-AB04-00C04FC2DCD2/2a2a748f-a69e-46e7-b35b-695c3812e73c/tls.msk.ru
...

I still don't know what it is doing though, what does it *mean*
it can't "bind" to this uuid?

/mjt



More information about the samba mailing list