[Samba] Samba4 AD / 2008R2 DNS Bug

Def It def.informatique91 at gmail.com
Tue Sep 5 06:49:48 UTC 2017


Hello list,

We are facing a bug with Windows DNS MMC on a Windows 2008R2 DC.
We have reproduced the bug on samba 4.2.3, 4.5.6 and 4.6.7 on redhat 6.3

If we try to add a record or a Zone on the Windows DNS MMC connected to the
2008R2 DC we have an error "Refused" it seems related to the bug that were
reporting on the 22 january 2016
https://lists.samba.org/archive/samba/2016-January/197316.html

We wanted to try a migration of Samba4 to full active directory by doing
this :

- Have a fully fonctionnal Samba4
- Installing a fresh 2008R2 (without update, in french)
- Joining the 2008R2 with dcpromo
- Transfer of the FSMO role + doing ADSI Edit for DomainDNSZone and
ForestDnsZone > All seems good for the 2008R2
- All MMC work except the DNS, we can delete some records but some records
keep reappearing after refreshing the MMC but can't add record or zone

We tried the same scenario but without transfering the FSMO role, still the
same, if we connect with DNS MMC to the Samba4 all works perfectly, even
replication to the 2008R2

In windows event log when DNS service start we have an error 4014
https://technet.microsoft.com/en-us/library/cc735713(v=ws.10).aspx but no
error when we get the "Refused" prompt
Regarding the Samba4 log, i leveled the log to 10 but it seems that the
linux isn't giving the error "Refused", all the process is only on Windows
part

Moreover is the bug https://bugzilla.samba.org/show_bug.cgi?id=12497 still
being analyzed ?

In the meantime, thank you so much for your attention and participation.

Jerome


More information about the samba mailing list