[Samba] ***BULK*** Re: Force logonserver in samba4

Achim Gottinger achim at ag-web.biz
Thu Apr 24 05:28:59 MDT 2014


You have to create an site assign an suitable subnet and join the DC 
from your oversea location afterwards.
Switching sites afterwards stopped working at around 4.03 release.

Am 24.04.2014 09:38, schrieb Iñigo Martinez Lasala:
> Yes, same problem.
>
> Since samba-tool only allows to create or delete sites but not manage 
> them, we will have to wait until this bug is fixed...
>
> On 23/04/14 20:31, lp101 wrote:
>> I believe this is a known bug. 
>> https://bugzilla.samba.org/show_bug.cgi?id=10251
>>
>> On 4/23/2014 1:44 PM, Iñigo Martinez Lasala wrote:
>>> Hi Marc.
>>>
>>> I've not worked with AD since Windows 2000 era and after ten years 
>>> with samba3 I had completely forgotten this feature.
>>>
>>> We have created three sites but after moving oversea DCs to proper 
>>> zone samba freezes. We will leave all the night working to see if we 
>>> have to wait for a long time or if there is some kind of problem 
>>> with Active Directory Sites and Services in samba4.
>>>
>>> Thank you very much.
>>>
>>>
>>> On 23/04/14 18:15, Marc Muehlfeld wrote:
>>>> Hello Iñigo,
>>>>
>>>> Am 23.04.2014 10:01, schrieb Iñigo Martinez Lasala:
>>>>> We have a samba4 domain deployed across serveral countries. Some 
>>>>> of them
>>>>> (overseas) have a poor VPN connection with mainland.
>>>>> Since Samba4 does not support (yet) subtrees, we have deployed a 
>>>>> DC in
>>>>> each location for domain validation. However users in mainland logon
>>>>> randomly at overseas location and sometimes this is a problem due 
>>>>> to low
>>>>> bandwidth available.
>>>>> Is there any way to contraint logon servers? We have though about two
>>>>> options:
>>>>>
>>>>> - Limit, via firewall rule, login at oversea locations from mainland,
>>>>> but we are not sure if this will a problem or delay in excess logon
>>>>> process.
>>>>> - Limit DNS replication so at mainland office no oversea DCs 
>>>>> entries are
>>>>> shown, but this would be quite complicated to implement.
>>>>>
>>>>> Any hints?
>>>>
>>>>
>>>> Have you tried to setup an AD site?
>>>> http://www.petri.co.il/create-active-directory-sites-windows-server.htm 
>>>>
>>>>
>>>>
>>>> Regards,
>>>> Marc
>>>
>>>
>>
>
>



More information about the samba mailing list