To bind or not to bind: net ads dns register is failing at times on machines with multiple interfaces

Richard Sharpe realrichardsharpe at
Thu Apr 21 18:29:21 UTC 2016

Hi folks,

I am seeing net ads dns register failing with Refused being given in
the response to the DDNS request.

This is because the TKEY was obtained using a connection bound to a
different interface than was used for for the update with TSIG.

The weird thing is that this only occurs sometimes. It mainly
currently occurs after we leave the domain.

In any event, it would seem that maybe the addns code should be forced
to bind the TKEY connection to the same IP address used for the
current connection.

Does that sound reasonable?

Richard Sharpe

More information about the samba-technical mailing list