[Samba] Samba member server behavior if WAN down ?

Public Le duf' aKa Demy public at ledufakademy.fr
Tue Oct 21 11:11:20 MDT 2014


Hello,

we do not have DC on local site.
the problem is not to have separate box for DC.
The problem is that samba/winbind, do not reconnect to domain and do not 
retrieve correct ACL we the WAN link is up again.

We need to manually restart nas server.

thank for your help,

Le 21/10/2014 09:38, Sébastien Le Ray a écrit :
>
> Hi,
>
> I guess the solution would be to have a local domain controller to 
> authenticate against. But with samba < 4.2 this is quite difficult 
> because of the very partial winbind implementation on Domain 
> Controllers which forces you to have a separate box to be domain 
> controller…
>
> Regards
> Le 21/10/2014 09:33, mots a écrit :
>> Hello,
>>
>> That's where RODC's would be useful, but samba hasn't fully implemented
>> this yet.
>> https://wiki.samba.org/index.php/Join_a_domain_as_a_DC#Joining_a_domain_as_a_RODC_.28Status_for_a_work_in_progress.29 
>>
>>
>> Maybe there's some other way, but I wouldn't know.
>>
>> Kind regards,
>>
>> mots
>>
>> Am 21.10.2014 um 08:43 schrieb Le Duf' aKa DemY:
>>> Hello,
>>>
>>> we are trying to use samba 3.6 over a big network with multiple xdsl
>>> link (512Kbit to 10 Mbits not symetric).
>>> We have a main site with two domain controlers (Windows 2k8 R2) and
>>> about one hundred middle sites with samba member servers.
>>>
>>> We have a big issue with Active Directory (AD) ACL which disapear when
>>> member server  (powered by samba and winbind)
>>> can't discuss (for network resaon : i.e. link is down for 10 mn) with
>>> ADC (Domain controler) which is located on main site.
>>>
>>> Is this a known issue of samba/winbind ?
>>> How can we fix this issue.
>>>
>>> Thank you for your support.
>>>
>



More information about the samba mailing list