[Samba] Authentication to Secondary Domain Controller initially fails when PDC is offline

Ole Traupe ole.traupe at tu-berlin.de
Thu Dec 10 13:40:19 UTC 2015


> You have problems, if you have two DCs, you should get something like 
> this:
>
> root at dc1:~# host -t SRV _ldap._tcp.samdom.example.com
> _ldap._tcp.samdom.example.com has SRV record 0 100 389 
> dc2.samdom.example.com.
> _ldap._tcp.samdom.example.com has SRV record 0 100 389 
> dc1.samdom.example.com.
> root at dc1:~# host -t SRV _kerberos._udp.samdom.example.com
> _kerberos._udp.samdom.example.com has SRV record 0 100 88 
> dc1.samdom.example.com.
> _kerberos._udp.samdom.example.com has SRV record 0 100 88 
> dc2.samdom.example.com.
>
> Rowland

Definitely, good! :)

However, I have been there, done that:
https://wiki.samba.org/index.php/Check_and_fix_DNS_entries_on_DC_joins

This page says nothing about ldap or kerberos... why?!

Ole





More information about the samba mailing list