[Samba] Cloned DC - was :AW: Samba 4 custom ports for DNS in 2020?

Rowland penny rpenny at samba.org
Mon Dec 28 11:24:36 UTC 2020

On 28/12/2020 10:45, Joachim Lindenberg via samba wrote:
> Hope you all had a pleasant Christmas time.
> Unfortunately I am still struggling with the issue below. Any suggestion?
> Thanks, Joachim
I think you may be hitting the 'dns.keytab isn't created in the correct 
place during a join' bug.

When you join a DC to an existing domain, the code to put the dns.keytab 
in the bind-dns directory isn't there, it is created in the private 

If this is your problem, you need to do one of two things, either copy 
the keytab from the private directory to the bind-dns directory and set 
the required permissions or run 'samba_upgradedns' followed by 
'samba_upgradedns --dns-backend=BIND9_DLZ', the latter method will copy 
the keytab for you.


More information about the samba mailing list