Search bases for dlz_bind9

Stefan (metze) Metzmacher metze at
Fri Sep 16 23:13:37 MDT 2011

Am 17.09.2011 02:47, schrieb Amitay Isaacs:
> Hi Stefan,
> On Fri, Sep 16, 2011 at 11:36 PM, Stefan Gohmann <gohmann at>wrote:
>> Hello,
>> by default the samba4 dlz_bind9 backend searches under
>> CN=MicrosoftDNS,DC=DomainDnsZones and CN=MicrosoftDNS,DC=ForestDnsZones.
>> In my samba4 test setup all DNS zones are under CN=MicrosoftDNS,CN=System.
>> After adding the attached patch it works fine for me.
>> Or are there any reasons to exclude this base?
>> Cheers,
>> Stefan
> AD based DNS works off the DomainDnsZones and ForestDnsZones partitions. If
> you would like to enable DNS based on AD, then you can use
> --dns-backend=BIND9_DLZ option to provision to create those partitions and
> populate them with appropriate entries.
> I am currently testing some changes in dlz_bind9 to run BIND without
> requiring running samba server. :)

With domain/forest level Windows 2000, we have to use
as windows 2000 doesn't support application partitions...


-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 262 bytes
Desc: OpenPGP digital signature
URL: <>

More information about the samba-technical mailing list