[Samba] Demoted/removed a DC, and the NS records?

Rowland Penny rpenny at samba.org
Fri Feb 15 13:43:43 UTC 2019


On Fri, 15 Feb 2019 14:34:26 +0100
Marco Gaiarin via samba <samba at lists.samba.org> wrote:

> Mandi! Denis Cardon via samba
>   In chel di` si favelave...
> 
> > what version of Samba are you running? Recent versions do a much
> > better job at DNS cleaning during demote.
> 
> Eh, domain controllers are still on samba 4.5...
> 
> 
> > I also advise you to run the demote on another DC than the one you
> > are demoting (samba-tool doamin demote
> > --remove-other-dead-server=xxxxx). Running a demote on the server
> > you are demoting feels awkward as it looks like you are sawing the
> > branch you are sitting on.
> 
> Ahem, this seems to me EXACTLY the opposite of what the wiki say:
> 
> 	https://wiki.samba.org/index.php/Demoting_a_Samba_AD_DC
> 

You should be able to demote a DC on the DC itself, but as Denis says,
demoting is better on recent versions of Samba. 
The '--remove-other-dead-server' option is meant for when a DC has died
and will not be coming back, the name sort of gives that away ;-)

Rowland



More information about the samba mailing list