samba_dnsupdate changes for better RODC support

Andrew Bartlett abartlet at samba.org
Mon Aug 25 17:27:42 MDT 2014


On Mon, 2014-08-25 at 17:42 +1200, Andrew Bartlett wrote:
> On Thu, 2014-08-21 at 17:36 +0200, Stefan (metze) Metzmacher wrote:
> > Am 19.08.2014 um 12:28 schrieb Stefan (metze) Metzmacher:
> > > Am 19.08.2014 um 12:26 schrieb Andrew Bartlett:
> > >> On Tue, 2014-08-19 at 12:33 +0200, David Disseldorp wrote:
> > >>> Hi Michael,
> > >>>
> > >>> On Fri, 29 Nov 2013 11:42:20 -0500, Michael Brown wrote:
> > >>>
> > >>>> On 13-11-27 06:06 PM, Andrew Bartlett wrote:
> > >>>>> I'm not entirely convinced this is correct.  For example, are you
> > >>>>> comparing an RODC that is also configured as a global catalog server?
> > >>>> Yes. Same config on both.
> > >>>>> Also, the ForestDNSZones an DomainDNSZones stuff needs to be conditional
> > >>>>> on us hosting DNS.
> > >>>> Yes - I have a bunch of ideas to redo a bunch of the RODC-focused 
> > >>>> tools... just need time :)
> > >>>
> > >>> Did you get around to reworking these patches? If so, please resend with
> > >>> a Signed-off-by tag, in line with
> > >>> http://www.samba.org/samba/devel/copyright-policy.html
> > >>
> > >> Metze has some patches for this area, that handles this and much more:
> > >> https://git.samba.org/?p=metze/samba/wip.git;a=shortlog;h=refs/heads/master4-dns
> > > 
> > > And I'm almost done. My tests today were mostly good. I'll post them for
> > > review in the
> > > next days.
> > 
> > Here are the patches for review.
> > 
> > There're still some TODOs:
> > 
> > - implement dns tombstone cleanup
> > - implement registering NS records from samba_dnsupdate
> >   and or samba-tool domain join
> > 
> > It would be good if someone could test the bind_dlz changes.
> 
> I'm writing an automated test for this.

See attached for the approach I'm taking.  I think this should be a
really good way to test this module.  

We should be able to test quite a few things this way, like updates and
zone transfers.

Please review.

(I'm also planning on doing the manual and further automated testing
required to review the DLZ changes).

Andrew Bartlett

-- 
Andrew Bartlett
http://samba.org/~abartlet/
Authentication Developer, Samba Team  http://samba.org
Samba Developer, Catalyst IT          http://catalyst.net.nz/services/samba



-------------- next part --------------
A non-text attachment was scrubbed...
Name: 0001-torture-dns-Add-test-for-dlz_bind9-lookups.patch
Type: text/x-patch
Size: 5736 bytes
Desc: not available
URL: <http://lists.samba.org/pipermail/samba-technical/attachments/20140826/b77216a9/attachment.bin>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 819 bytes
Desc: This is a digitally signed message part
URL: <http://lists.samba.org/pipermail/samba-technical/attachments/20140826/b77216a9/attachment.pgp>


More information about the samba-technical mailing list