[Samba] group policy update fails

Rowland Penny rpenny at samba.org
Mon Nov 21 09:59:10 UTC 2016


On Mon, 21 Nov 2016 13:28:39 +0400
Mike Lykov via samba <samba at lists.samba.org> wrote:

> 21.11.2016 12:32, L.P.H. van Belle via samba пишет:
> > Hai,
> >
> > Since your getting.
> > finddcs: No matching server found
> >> ERROR: Invalid IP address '3(NXDOMAIN)'!
> > There is something wrong in the base of you setup.
> 
> yes, and it is a server own local hostname
> see "DC server own hostname must be part of ad dc domain?" thread
> 
> your script relies on "hostname -d" output, but my server have
> hostname domain != AD DC domain

There is your problem!!

'hostname domain' MUST be the same as 'AD DC domain'

If it isn't, they are not the same domains and kerberos will not
work.

> 
> hostname domain :
> root at ad51:~# hostname -d
> samges.ru
> 
> AD DC domain:
> dc.samges.ru
> 
> local fqdn hostname for server
> root at ad51:~# hostname -f
> ad51.samges.ru
> 
> server in ad dc domain:
> 
> root at ad51:/var/log/samba# host -t A ad51.dc.samges.ru
> ad51.dc.samges.ru has address 172.16.214.151
> 
> > Check all DC's for ipnumbers (A) and PTR records.
> > Dont forget to create the reverse zone yourself.
> 
> I have not created reverse zone yet, because
> 
> 
> > https://wiki.samba.org/index.php/Verifying_and_Creating_a_DC_DNS_Record
> 
> Nothing about PTR on wiki here ^  or here:
> https://wiki.samba.org/index.php/Joining_a_Samba_DC_to_an_Existing_Active_Directory
> 
> or here
> https://wiki.samba.org/index.php/Setting_up_Samba_as_an_Active_Directory_Domain_Controller#Configuring_the_DNS_Resolver
> 

You are quite correct, if there is anything it is hard to find, I will
correct this. 

Rowland



More information about the samba mailing list