[Samba] Samba still DNS Exit Code 23

Rowland penny rpenny at samba.org
Tue Mar 24 17:55:45 UTC 2020

On 24/03/2020 17:38, maurizio at caloro.ch wrote:
> Systemctl start samba-ad-dc
> Only one KDC Service are still running on this machine that need to run also
> Samba AD DC
> 	"krb5-kdc is already the newest version (1.17-3)"

apt-get purge krb5-kdc -y

That is the MIT kdc, a samba DC uses the builtin Heimdal kdc, you cannot 
have two kdc's

> DNS entry removed
>>> If it is the 'caloro.m' dns domain, then I suggest you turn it off and
> use the DC instead.
> Sorry i dont know what you, mean....

A Samba DC has it's own dns server and every DC is authoritative for the 
dns domain (in your case caloro.m). The DC uses itself for its 
nameserver and your clients must also use the DC for their nameservers. 
The DC should return records for the caloro.m dns domain, but anything 
outside the caloro.m dns domain should be forwarded to a dns server 
outside the  caloro.m dns domain. This could be one of Googles dns 
servers ( for instance) or it could be another dns server you 
control, but it must be outside the  caloro.m dns domain.

So, if your Bind9 server has 'caloro.m' as one of its zones, you cannot 
use it.


More information about the samba mailing list