[Samba] DNS PTR update fails if IP is reused by another client

spindles seven spindles7 at gmail.com
Sat Dec 11 11:47:30 UTC 2021

I have re-installed Windows 10 on one of my domain client machines, and it has received the same IP address as before.   I renamed the machine and joined it to the domain.  But I am now getting log messages like this:


Dec 11 09:42:32 rpi3-dc named[477172]: samba_dlz: disallowing update of signer=LION\$\@MICROLYNX.ORG name= type=PTR error=insufficient access rights


Searching the web for clues I found this web page:




which seems the same problem I am experiencing.   So could tombstone records be causing this?   If so is there a workaround?


I have checked the permissions on the reverse zone and Authenticated Users has rights to create child objects.    I added Domain Computers as well to make sure (as I believe Domain Computers are members of Authenticate Users) but that did not resolve the issue.


The DC is running samba version 4.15.2 on Debian Bullseye with bind_dlz dns backend.  Bind9 is version 9.16.22-Debian





More information about the samba mailing list