[Samba] Server GC/name.dom/dom is not registered with our KDC: Miscellaneous failure (see text): Server (GC/name/dom at DOM) unknown
rpenny at samba.org
Mon Sep 11 12:55:10 UTC 2017
On Mon, 11 Sep 2017 14:32:53 +0200
Sven Schwedas via samba <samba at lists.samba.org> wrote:
> Okay, time to bring some order into this.
> == Keytab and replication ==
> Editing servicePrincipalName cleaned up the keytab. Some things are
> even replicating correctly (modulo the missing host), others aren't.
> DNS replication (DC=ForestDnsZones and DC=DomainDnsZones) is still not
> working, at least one host is trying to connect to deleted servers for
> this. The other I cannot confirm because it's still offline.
> I'll check again once the remaining DC is back online.
> In the meantime it'd be nice to know where exactly Samba ADDCs store
> their replication config so I can see why they have outdated garbage
> in them, even though the RSAT tools claim everything is working and
> configured correctly.
Everything is stored in sam.ldb, but by default, most records are not
shown by ldbsearch etc
To show all the records, use '--cross-ncs'
More information about the samba