[Samba] Authentication to Secondary Domain Controller initially fails when PDC is offline

Ole Traupe ole.traupe at tu-berlin.de
Thu Dec 10 14:13:23 UTC 2015



Am 10.12.2015 um 14:53 schrieb L.P.H. van Belle:
> ( sorry )
> I know about this sinds 28-may-2015 :-/  thats when i noticed this problem.
>
> Give me a few min, i'll get some more info.

I appreciate your honesty. :)

Would be good to know which records I need for the stable operating of 
my domain, and how to create them (both in FQDN and _msdcs.FQDN).



>
>
>
>> -----Oorspronkelijk bericht-----
>> Van: samba [mailto:samba-bounces at lists.samba.org] Namens Rowland penny
>> Verzonden: donderdag 10 december 2015 14:50
>> Aan: samba at lists.samba.org
>> Onderwerp: Re: [Samba] Authentication to Secondary Domain Controller
>> initially fails when PDC is offline
>>
>> On 10/12/15 13:40, Ole Traupe wrote:
>>>> You have problems, if you have two DCs, you should get something like
>>>> this:
>>>>
>>>> root at dc1:~# host -t SRV _ldap._tcp.samdom.example.com
>>>> _ldap._tcp.samdom.example.com has SRV record 0 100 389
>>>> dc2.samdom.example.com.
>>>> _ldap._tcp.samdom.example.com has SRV record 0 100 389
>>>> dc1.samdom.example.com.
>>>> root at dc1:~# host -t SRV _kerberos._udp.samdom.example.com
>>>> _kerberos._udp.samdom.example.com has SRV record 0 100 88
>>>> dc1.samdom.example.com.
>>>> _kerberos._udp.samdom.example.com has SRV record 0 100 88
>>>> dc2.samdom.example.com.
>>>>
>>>> Rowland
>>> Definitely, good! :)
>>>
>>> However, I have been there, done that:
>>> https://wiki.samba.org/index.php/Check_and_fix_DNS_entries_on_DC_joins
>>>
>>> This page says nothing about ldap or kerberos... why?!
>>>
>>> Ole
>>>
>>>
>>>
>> Probably because either nobody has noticed the problem or the problem
>> hasn't been reported before.
>>
>> Rowland
>>
>>
>> --
>> To unsubscribe from this list go to the following URL and read the
>> instructions:  https://lists.samba.org/mailman/options/samba
>
>




More information about the samba mailing list