[Samba] Failed to bind to uuid (GUID)._msdcs.DOMAIN NT_STATUS_NO_LOGON_SERVERS & IRPC callback failed for DsReplicaSync - NT_STATUS_IO_TIMEOUT

Michał Półrolniczak michal.polrolniczak at warp.org.pl
Thu Jul 24 10:40:45 MDT 2014


Did you edit /etc/krb5.conf on PDC
[libdefaults]
 dns_lookup_realm = true
 dns_lookup_kdc = true
 default_realm = SOLID-OTPICS.LOCAL

And added FQDN in /etc/hosts 

I fallowed https://wiki.samba.org/index.php/Join_a_domain_as_a_DC and replication and Kerberos works great on both PDC and SDC.



W dniu 2014-07-24 o 17:13, Fernando Rodriguez pisze:
> In addition to this, when I issue the command kinit
> administrator at SOLID-OTPICS.LOCAL it prompts me  this:
>
> root at hoorn:/home/newhang# kinit administrator at SOLID-OPTICS.LOCAL
> kinit: Cannot contact any KDC for realm 'SOLID-OPTICS.LOCAL' while
> getting initial credentials
> root at hoorn:/home/newhang#
>
> Thank you
>
>
> On 24/07/2014 17:07, Fernando Rodriguez wrote:
>> Hello everyone.
>>
>> After all the problems I had demoting my DC and managed it to work
>> again, it was working for only a week.
>>
>> Now i am getting this messages on the log:
>>
>> [2014/07/22 16:13:11.745783,  0]
>> .../source4/librpc/rpc/dcerpc_util.c:681(dcerpc_pipe_auth_recv)
>>    Failed to bind to uuid e3514235-4b06-11d1-ab04-00c04fc2dcd2 for
>> e3514235-4b06-11d1-ab04-00c04fc2dcd2 at ncacn_ip_tcp:cb1b21b6-e525-426d-a277-c86110644b38._msdcs.solid-optics.local[1024,seal,krb5]
>>
>> NT_STATUS_NO_LOGON_SERVERS
>>
>>
>>    [2014/07/22 16:18:06.965511,  0]
>> .../source4/rpc_server/common/forward.c:51(dcesrv_irpc_forward_callback)
>>    IRPC callback failed for DsReplicaSync - NT_STATUS_IO_TIMEOUT
>>
>>
>> for the last two days.
>>
>> The funny thing is that it still knwos who is the owner of the roles:
>> root at hoorn:/home/newhang# samba-tool fsmo show
>> InfrastructureMasterRole owner: CN=NTDS
>> Settings,CN=VOLENDAM,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=solid-optics,DC=local
>>
>>
>> RidAllocationMasterRole owner: CN=NTDS
>> Settings,CN=VOLENDAM,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=solid-optics,DC=local
>>
>>
>> PdcEmulationMasterRole owner: CN=NTDS
>> Settings,CN=VOLENDAM,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=solid-optics,DC=local
>>
>>
>> DomainNamingMasterRole owner: CN=NTDS
>> Settings,CN=VOLENDAM,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=solid-optics,DC=local
>>
>>
>> SchemaMasterRole owner: CN=NTDS
>> Settings,CN=VOLENDAM,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=solid-optics,DC=local
>>
>>
>> root at hoorn:/home/newhang#
>>
>>
>> He still founds volendam
>>
>> root at hoorn:/home/newhang# ping volendam
>> PING volendam.solid-optics.local (192.168.10.42) 56(84) bytes of data.
>> 64 bytes from 192.168.10.42: icmp_req=1 ttl=64 time=0.192 ms
>> 64 bytes from 192.168.10.42: icmp_req=2 ttl=64 time=0.228 ms
>> 64 bytes from 192.168.10.42: icmp_req=3 ttl=64 time=0.204 ms
>> ^C64 bytes from 192.168.10.42: icmp_req=4 ttl=64 time=0.295
>>
>> but not the domain
>> root at hoorn:/home/newhang# ping solid-optics.local
>> ping: unknown host solid-optics.local
>> root at hoorn:/home/newhang#
>>
>> Any idea?
>>
>> Thank you everyone for your help and time.
>> Fernando
>>
>>
>>
>>
>> ---
>> Este mensaje no contiene virus ni malware porque la protección de avast!
>> Antivirus está activa.
>> http://www.avast.com
>>
>>
>
>
> ---
> Este mensaje no contiene virus ni malware porque la protección de
> avast! Antivirus está activa.
> http://www.avast.com
>
>



More information about the samba mailing list