[Samba] id mapping on a dc+file server

Rowland penny rpenny at samba.org
Thu Aug 29 16:10:11 UTC 2019

On 29/08/2019 16:57, Stefan G. Weichinger via samba wrote:
> Am 13.08.19 um 17:52 schrieb Stefan G. Weichinger via samba:
>> Am 13.08.19 um 08:20 schrieb Stefan G. Weichinger via samba:
>>> Am 12.08.19 um 17:07 schrieb L.P.H. van Belle via samba:
>>>> Hai Stefan,
>>>> Why make DC2 a member??
>>>> Leave it as is, setup a new member, much better, and i'll bet less work/stress.
>>> In fact it's even DC1 but anyway: because of the hardware. Specific RAID
>>> arrays etc needed for backups and snapshots.
>> I assume I should maybe move the FSMO roles at *first* ? The DC to be
>> removed here was the initial DC so it has these roles assigned.
>> After that I would add DC3, let it sync etc ... then demote DC1 and
>> after tests with DC2 und DC3 (DC2=DC1new, DC3=DC2new ;-))
>> scratch/archive DC1:/var/lib/samba and set up a DM on that hardware
>> based on the same smb.conf as on the current first DM/fileserver.
>> All this will happen in a few weeks or so, time enough to think about
>> it, prepare and enjoy the thrill :-P
> added third DC 2 hrs ago, copied idmap.ldb etc as mentioned
> AD is synced (showrepl), sysvol-rsync works, looks good
> PCs already are told to use it as DNS
So far, so good ;-)
> now my next step is demoting the old DC1, I will follow
> https://wiki.samba.org/index.php/Demoting_a_Samba_AD_DC
> after that this former DC should become a plain DM file server
> Should I rm /var/lib/samba before editing smb.conf and re-joining?

Just remove the .tdb & .ldb files and any cache files, do not remove the 
main directory structure (except for sysvol etc).


More information about the samba mailing list