[Samba] FW: samba_kcc issue after joining the domain as a DC

Rowland penny rpenny at samba.org
Tue Feb 11 17:26:19 UTC 2020


On 11/02/2020 17:11, Alex via samba wrote:
>>> # samba-tool dns zonelist 172.26.1.81
>>> Password for [administrator at domain.com]:
>>>     2 zone(s) found
>>>
>>>     pszZoneName                 : _msdcs.domain.com
>>>     Flags                       : DNS_RPC_ZONE_DSINTEGRATED DNS_RPC_ZONE_UPDATE_SECURE
>>>     ZoneType                    : DNS_ZONE_TYPE_PRIMARY
>>>     Version                     : 50
>>>     dwDpFlags                   : DNS_DP_AUTOCREATED DNS_DP_FOREST_DEFAULT DNS_DP_ENLISTED
>>>     pszDpFqdn                   : ForestDnsZones.domain.com
>>>
>>>     pszZoneName                 : domain.com
>>>     Flags                       : DNS_RPC_ZONE_DSINTEGRATED DNS_RPC_ZONE_UPDATE_SECURE
>>>     ZoneType                    : DNS_ZONE_TYPE_PRIMARY
>>>     Version                     : 50
>>>     dwDpFlags                   : DNS_DP_AUTOCREATED DNS_DP_FOREST_DEFAULT DNS_DP_ENLISTED
>>>     pszDpFqdn                   : ForestDnsZones.domain.com
>>>
>> I have three zones, one being the reverse zone, but my domain zone is this:
>>     pszZoneName        : samdom.example.com
>>     Flags                       : DNS_RPC_ZONE_DSINTEGRATED
>> DNS_RPC_ZONE_UPDATE_SECURE
>>     ZoneType                : DNS_ZONE_TYPE_PRIMARY
>>     Version                    : 50
>>     dwDpFlags               : DNS_DP_AUTOCREATED DNS_DP_DOMAIN_DEFAULT
>> DNS_DP_ENLISTED
>>     pszDpFqdn               : DomainDnsZones.samdom.example.com
>> Notice the difference in the last line.
> I see the difference. I guess it's b/c you didn't upgrade the zone to
> forest-wide. Should I revert my zones to be domain-wide?
>
Alex, mine is correct, yours is wrong.

I could probably dump a list of dns DN's if needed.

Rowland





More information about the samba mailing list