Tue Dec 4 20:06:48 UTC 2018


I am trying to join a new 4.9.3 DC to an existing samba domain using 
as a guide.

I have the resolver pointed to the 2 existing DC's and names resolution is working.
I am able to get a kerberos ticket.

When I try to join the domain I get the following:

(vdc3 pts3) # samba-tool domain join kmg.mydomain.com -U"KMG\administrator" --dns-backend=BIND9_DLZ --option='idmap_ldb:use rfc2307 = yes'
Password for [KMG\administrator]:
WARNING: talloc_steal with references at ../lib/talloc/talloc.c:2075
         reference at ../lib/talloc/pytalloc_util.c:182
Joined domain KMG (S-1-5-21-3052942767-4183929206-737583365)
(vdc3 pts3) #

As you can see above it says it joined but it does not appear to have completed
correctly. The other DC's do not recognize it as a DC, and the only file in
/usr/local/samba/private is secrets.ldb.

If it matters the existing DC's one is running 4.7.7 and the other is running
4.8.7. The plan is to replace both of them with new vm's running 4.9.3.

Can someone give ma an idea of what I could be doing wrong?


