[Samba] Floating IP breaks AD replication

mj lists at merit.unu.edu
Mon Nov 23 21:04:37 UTC 2020

On 11/23/20 6:54 PM, Sven Wick via samba wrote:
>> Your DC's really should have fixed IP's
> Well, they have.
> But there are still projects
> which can not use multiple DNS Names.
> e.g.
> - https://gitlab.com/gitlab-org/gitlab/-/issues/139
> - https://github.com/go-gitea/gitea/issues/6898
> So I use an additional floating IP

What we do for those cases: we use a local HAProxy on that server, 
listening on localhost:389, and point HAProxy to the multiple AD backend 

You configure one haproxy ldap in your application, and HAProxy takes 
care of all the redundancy / switching between different ldap servers stuff.


