[Samba] Different LDAP query in different DC...

Rowland Penny rpenny at samba.org
Thu Nov 29 10:16:46 UTC 2018

On Thu, 29 Nov 2018 10:52:30 +0100
Marco Gaiarin via samba <samba at lists.samba.org> wrote:

> Mandi! Rowland Penny via samba
>   In chel di` si favelave...
> > > No. Anyway, note that query return correctly 'result: 0 Success',
> > > simply return no data.
> > That just means the search retuned without error
> Eh. Query succeded and return no data. Yes.
> > If you run the command:
> > ldapsearch -H ldap://vdcpp1.ad.fvg.lnf.it -W -D
> > CN=mta,OU=Restricted,DC=ad,DC=fvg,DC=lnf,DC=it -b
> > DC=ad,DC=fvg,DC=lnf,DC=it "(cn=prova123)"
> > Does it produce the entire users object ?
> No, query succeded and return no data.

Whilst there are attributes that do not get replicated between DC's,
the majority are, so each DC should allow the same access.

Do you have access to the DC ?
Can you run the search locally ?

If it works locally, then something is getting in the way.
If it doesn't work locally, then there is something wrong with AD on
that computer.


More information about the samba mailing list