[Samba] placing sam.ldb (was dns.keytab doesn't exist)

Rowland penny rpenny at samba.org
Fri Dec 11 20:45:13 UTC 2020

On 11/12/2020 20:02, Dan Egli wrote:
> I have the keytab file, and it's pointed there. What line do I put in 
> for the sam.ldb file? 

Nothing, it should be created for you.

On my DC /var/lib/samba/bind-dns contains this:

dns  dns.keytab  named.conf  named.conf.update    named.txt

The 'dns' dir contains:

sam.ldb  sam.ldb.d

The 'sam.ldb.d' dir contains:


> I can see where the good one and the bogus one were created. I'm 
> perfectly content to copy the good one over the bogus one, but if 
> there's a better option, I'd like to know about it. I have NO lines 
> dealing with sam.ldb at all. the tkey-gssapt-keytab line already 
> existed in my config, no worries there.
Yes, but was it the correct line, I only ask because everything used to 
be in the private dir.
> Once I do all of this, in theory I should be able to start named in 
> association with samba, right? 
Once everything is correct, then yes.
> And then samba should be able to tell named when to update the zone 
> files for the domain, right?

something along those lines.


More information about the samba mailing list