Domain join failing in an RODC site.

Stefan (metze) Metzmacher metze at samba.org
Thu Aug 29 12:10:10 MDT 2013


Hi HEMANTH,

> When we are trying to join the domain from a site in which only available
> DC is Read Only DC, Samba server is always contacting the site local RODC
> and failing with status not supported error.
> 
> Whereas other windows clients in the same site are able to contact the
> writable DCs outside of the site and domain join is succeeding.
> 
> Looks like we are always querying the site local DC information .. Here is
> the snippet from net ads join -d10 :
> 
> dsgetdcname: domain_name: FUNC, domain_guid: (null), site_name: (null),
> flags: 0x40001011
> debug_dsdcinfo_flags: 0x40001011
>         DS_FORCE_REDISCOVERY DS_DIRECTORY_SERVICE_REQUIRED
> DS_WRITABLE_REQUIRED DS_RETURN_DNS_NAME
> sitename_fetch: Returning sitename for FUNC: "FUNC-SITE3"
> dsgetdcname_rediscover
> ads_dns_lookup_srv: Failed to resolve
> _ldap._tcp.FUNC-SITE3._sites.dc._msdcs.FUNC (Unknown error: 0)
> 
> I also witnessed that in dsgetdcname() there is no separate query sent when
> we have flag DS_WRITABLE_REQUIRED for domain join.
> 
> Bug 5917 already raised for the same. Just want to know whether this has
> been addressed in latest releases including samba4.

No, it's not fixed yet, please paste the content of this mail to the bug.

metze

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 261 bytes
Desc: OpenPGP digital signature
URL: <http://lists.samba.org/pipermail/samba-technical/attachments/20130829/321ef9c3/attachment.pgp>


More information about the samba-technical mailing list