[Samba] Unable to add additional domain controller - uncaught exception - LDAP error 10 on join

Rowland Penny rpenny at samba.org
Tue Oct 2 09:03:34 UTC 2018


On Tue, 2 Oct 2018 10:33:35 +0200
Fabio Fantoni <fabio.fantoni at m2r.biz> wrote:

> Il 01/10/2018 17:33, Rowland Penny via samba ha scritto:
> > On Mon, 1 Oct 2018 17:14:09 +0200
> > "L.P.H. van Belle via samba" <samba at lists.samba.org> wrote:
> >
> >> Hai Fabio,
> >>
> >> We dont mind crappy english...
> >> At least not me, I'm the same, lots of typos. You will learn it,
> >> the more you type it. ;-)
> >>
> >> https://lists.samba.org/archive/samba/2018-February/214118.html
> >> Shows exact the same, but not solution.
> >>
> >> Looks like a left over from an other DC.
> Thanks for your reply, as explained I already did some search and 
> solve/workaround 2 previous fails with different error but I not
> found solution for this :(
> >>
> >>> ERROR(ldb): uncaught exception - LDAP error 10 LDAP_REFERRAL -
> >>> <0000202B: RefErr: DSID-030A0B09, data 0, 1 access points
> >>>           ref 1:
> >>> 'a45ce9be-c350-4429-964b-a10c1dd92af5._msdcs.m2r.local'
> >>>   > <ldap://a45ce9be-c350-4429-964b-a10c1dd92af5._msdcs.m2r.local>
> >> Try to find : a45ce9be-c350-4429-964b-a10c1dd92af5._msdcs.m2r.local
> >> And check what that is, any old server, a running one?
> 
> a45ce9be-c350-4429-964b-a10c1dd92af5._msdcs.m2r.local is a cname of
> the actual and correct pdc d7npdc.m2r.local (with same version samba)
> 
> >>
> >>
> >>
> >> Greetz,
> >>
> >> Louis
> >>
> >>
> > I wonder if this is sort of self inflicted ?
> > The OP tried to join as a second DC, but this failed, he then tried
> > again. I wonder if the first try set up something (and didn't remove
> > it) that the second attempt doesn't like ?
> >
> > Rowland
> >
> Sorry for my bad english but here I not understand what you mean.

Your English isn't that bad, I just phrased the comment in a away you
didn't understand ;-)

What I was trying to say was, did the first attempt to join the second
DC to the first DC (NOTE: please don't call it a pdc, it isn't a pdc)
create something in AD that the second join attempt didn't like.

Can I suggest this:
go here: http://apt.van-belle.nl/

Upgrade your first DC to 4.8.5 using Louis's packages.
Clean up and rename the PC that will become the second DC and then,
using Louis's 4.8.5 packages try again.

The debian 4.5.x packages are EOL as far as Samba is concerned and
there have been many changes since they were released.

Rowland



More information about the samba mailing list