[Samba] id mapping on a dc+file server

Stefan G. Weichinger lists at xunil.at
Thu Aug 29 15:57:47 UTC 2019


Am 13.08.19 um 17:52 schrieb Stefan G. Weichinger via samba:
> Am 13.08.19 um 08:20 schrieb Stefan G. Weichinger via samba:
>> Am 12.08.19 um 17:07 schrieb L.P.H. van Belle via samba:
>>> Hai Stefan, 
>>>
>>> Why make DC2 a member?? 
>>> Leave it as is, setup a new member, much better, and i'll bet less work/stress. 
>>
>> In fact it's even DC1 but anyway: because of the hardware. Specific RAID
>> arrays etc needed for backups and snapshots.
> 
> I assume I should maybe move the FSMO roles at *first* ? The DC to be
> removed here was the initial DC so it has these roles assigned.
> 
> After that I would add DC3, let it sync etc ... then demote DC1 and
> after tests with DC2 und DC3 (DC2=DC1new, DC3=DC2new ;-))
> scratch/archive DC1:/var/lib/samba and set up a DM on that hardware
> based on the same smb.conf as on the current first DM/fileserver.
> 
> All this will happen in a few weeks or so, time enough to think about
> it, prepare and enjoy the thrill :-P

added third DC 2 hrs ago, copied idmap.ldb etc as mentioned

AD is synced (showrepl), sysvol-rsync works, looks good

PCs already are told to use it as DNS

now my next step is demoting the old DC1, I will follow
https://wiki.samba.org/index.php/Demoting_a_Samba_AD_DC

after that this former DC should become a plain DM file server

Should I rm /var/lib/samba before editing smb.conf and re-joining?




More information about the samba mailing list