[Samba] DHCP, DNS and non-domain members

Andrew Bartlett abartlet at samba.org
Fri Nov 24 19:11:42 UTC 2017


On Thu, 2017-11-23 at 16:35 +0000, Rowland Penny via samba wrote:
> On Thu, 23 Nov 2017 17:05:00 +0100
> Martin Renner via samba <samba at lists.samba.org> wrote:
> 
> > Hi Rowland,
> > 
> > my problem is, how to get the non-AD members into the DNS?
> > Especially, if they are servers and have dynamic IPs from a DHCP
> > server?
> > 
> > As far as I understand, only AD members will update the DNS inside of
> > the AD. So do I have to deliver fixed IP addresses via DHCP to
> > servers and put a manual entry into the AD DNS?
> > 
> 
> You run the DHCP server on a DC, see here:
> 
> https://wiki.samba.org/index.php/Configure_DHCP_to_update_DNS_records_with_BIND9

That is a really great article!

If there is a strict requirement to split it up, ovbiously the commands
to create the user and extract the keytab can be done on the DC and the
 result passed to another server.

I've long wished for a patch to our DNS server to support shared-secret 
TSIG to make this easier, but with this script written there isn't
really much need any more. 

Andrew Bartlett

-- 
Andrew Bartlett                       http://samba.org/~abartlet/
Authentication Developer, Samba Team  http://samba.org
Samba Developer, Catalyst IT          http://catalyst.net.nz/services/samba




More information about the samba mailing list