[Samba] Failed to bind to uuid (GUID)._msdcs.DOMAIN NT_STATUS_NO_LOGON_SERVERS & IRPC callback failed for DsReplicaSync - NT_STATUS_IO_TIMEOUT

Fernando Rodriguez fernando at solid-optics.com
Thu Jul 24 14:01:58 MDT 2014


Hello,

Yes I did. The configuration is that  and I follow the wiki.

The DC was working and was replicating. But it stops. The message 
started on the 22. Before everything was working fine.

Did anyone meet this situation?

Thank you.


On 24/07/2014 18:40, Michał Półrolniczak wrote:
>
> Did you edit /etc/krb5.conf on PDC
> [libdefaults]
>   dns_lookup_realm = true
>   dns_lookup_kdc = true
>   default_realm = SOLID-OTPICS.LOCAL
>
> And added FQDN in /etc/hosts
>
> I fallowed https://wiki.samba.org/index.php/Join_a_domain_as_a_DC and replication and Kerberos works great on both PDC and SDC.
>
>
>
> W dniu 2014-07-24 o 17:13, Fernando Rodriguez pisze:
>> In addition to this, when I issue the command kinit
>> administrator at SOLID-OTPICS.LOCAL it prompts me  this:
>>
>> root at hoorn:/home/newhang# kinit administrator at SOLID-OPTICS.LOCAL
>> kinit: Cannot contact any KDC for realm 'SOLID-OPTICS.LOCAL' while
>> getting initial credentials
>> root at hoorn:/home/newhang#
>>
>> Thank you
>>
>>
>> On 24/07/2014 17:07, Fernando Rodriguez wrote:
>>> Hello everyone.
>>>
>>> After all the problems I had demoting my DC and managed it to work
>>> again, it was working for only a week.
>>>
>>> Now i am getting this messages on the log:
>>>
>>> [2014/07/22 16:13:11.745783,  0]
>>> .../source4/librpc/rpc/dcerpc_util.c:681(dcerpc_pipe_auth_recv)
>>>     Failed to bind to uuid e3514235-4b06-11d1-ab04-00c04fc2dcd2 for
>>> e3514235-4b06-11d1-ab04-00c04fc2dcd2 at ncacn_ip_tcp:cb1b21b6-e525-426d-a277-c86110644b38._msdcs.solid-optics.local[1024,seal,krb5]
>>>
>>> NT_STATUS_NO_LOGON_SERVERS
>>>
>>>
>>>     [2014/07/22 16:18:06.965511,  0]
>>> .../source4/rpc_server/common/forward.c:51(dcesrv_irpc_forward_callback)
>>>     IRPC callback failed for DsReplicaSync - NT_STATUS_IO_TIMEOUT
>>>
>>>
>>> for the last two days.
>>>
>>> The funny thing is that it still knwos who is the owner of the roles:
>>> root at hoorn:/home/newhang# samba-tool fsmo show
>>> InfrastructureMasterRole owner: CN=NTDS
>>> Settings,CN=VOLENDAM,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=solid-optics,DC=local
>>>
>>>
>>> RidAllocationMasterRole owner: CN=NTDS
>>> Settings,CN=VOLENDAM,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=solid-optics,DC=local
>>>
>>>
>>> PdcEmulationMasterRole owner: CN=NTDS
>>> Settings,CN=VOLENDAM,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=solid-optics,DC=local
>>>
>>>
>>> DomainNamingMasterRole owner: CN=NTDS
>>> Settings,CN=VOLENDAM,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=solid-optics,DC=local
>>>
>>>
>>> SchemaMasterRole owner: CN=NTDS
>>> Settings,CN=VOLENDAM,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=solid-optics,DC=local
>>>
>>>
>>> root at hoorn:/home/newhang#
>>>
>>>
>>> He still founds volendam
>>>
>>> root at hoorn:/home/newhang# ping volendam
>>> PING volendam.solid-optics.local (192.168.10.42) 56(84) bytes of data.
>>> 64 bytes from 192.168.10.42: icmp_req=1 ttl=64 time=0.192 ms
>>> 64 bytes from 192.168.10.42: icmp_req=2 ttl=64 time=0.228 ms
>>> 64 bytes from 192.168.10.42: icmp_req=3 ttl=64 time=0.204 ms
>>> ^C64 bytes from 192.168.10.42: icmp_req=4 ttl=64 time=0.295
>>>
>>> but not the domain
>>> root at hoorn:/home/newhang# ping solid-optics.local
>>> ping: unknown host solid-optics.local
>>> root at hoorn:/home/newhang#
>>>
>>> Any idea?
>>>
>>> Thank you everyone for your help and time.
>>> Fernando
>>>
>>>
>>>
>>>
>>> ---
>>> Este mensaje no contiene virus ni malware porque la protección de avast!
>>> Antivirus está activa.
>>> http://www.avast.com
>>>
>>>
>>
>>
>> ---
>> Este mensaje no contiene virus ni malware porque la protección de
>> avast! Antivirus está activa.
>> http://www.avast.com
>>
>>
>



More information about the samba mailing list