Fwd: Error start bind9 samba4 BIND9_DLZ

Daniele Dario d.dario76 at gmail.com
Tue Sep 24 09:01:59 CEST 2013


Hi Jacó,
I'm not a developer but this is just my cent.

I guess the join has succeeded.
Did you check the required DNS entries of the new host as stated in the
wiki?
Did you check also the apparmor profile to give the right permissions to
bind to access files as stated in
https://wiki.samba.org/index.php/Dns-backend_bind#Interaction_with_AppArmor_or_SELinux ?

I'm using ubuntu and this is the section I added
to /etc/apparmor.d/usr.sbin.named to get it working.

# samba4 related
/usr/local/samba/etc/** r,
/usr/local/samba/private/dns.keytab krw,
/usr/local/samba/private/dns/** krw,
/usr/local/samba/private/dns/ krw,
/usr/local/samba/private/named.conf r,

# libdlz_bind9 modules need to be accessed
/usr/local/samba/lib/** mr,
/usr/local/samba/modules/** mr,

# with libdlz_bind9, named needs to access /var/TMP/DNS-${HOSTNAME}_xxx
tickets
/var/tmp/** rw,
/tmp/** rw,

Hope this helps,
Daniele.

On Mon, 2013-09-23 at 19:42 -0300, Jacó Ramos wrote:
> Howto resolves?
> 
> /etc/init.d/bind9 start
> 
> root at samba:~# tail -f /var/log/syslog
> Sep 23 11:01:24 samba named[2558]: listening on IPv4 interface eth0,
> 128.1.6.197#53
> Sep 23 11:01:24 samba named[2558]: generating session key for dynamic DNS
> Sep 23 11:01:24 samba named[2558]: sizing zone task pool based on 5 zones
> Sep 23 11:01:24 samba named[2558]: Loading 'AD DNS Zone' using driver dlopen
> Sep 23 11:01:24 samba named[2558]: samba_dlz: Unable to get basedn for
> /usr/local/samba/private/dns/sam.ldb - NULL Base DN invalid for a base
> search
> Sep 23 11:01:24 samba named[2558]: dlz_dlopen of 'AD DNS Zone' failed
> Sep 23 11:01:24 samba named[2558]: SDLZ driver failed to load.
> Sep 23 11:01:24 samba named[2558]: DLZ driver failed to load.
> Sep 23 11:01:24 samba named[2558]: loading configuration: failure
> Sep 23 11:01:24 samba named[2558]: exiting (due to fatal error)
> 
> Used comand:
> 
> /usr/local/samba/bin/samba-tool domain join dominiolinux.net.br DC -U
> administrador --realm=DOMINIOLINUX.NET.BR --dns-backend=BIND9_DLZ
> 
> 
> I am using samba4 4.0.4 and debian 7 and Windows 2003 Server.
> 
> Thanks!
> -- 
> 
> *"O homem não foi criado para ser feliz nem para vencer, mas para viver
> para Deus. Quando vive para Deus é feliz e vence." Isaltino Gomes
> *
> *
> $whoami*
> 
>    - Perito Forense Computacional
>    - Pentester
>    - Esp. em Segurança de Redes de Computadores com enfâse a Perícia
>    Forense Computacional - FACID
>    - Bacharel em Ciência da Computação - UESPI
>    - Administrador de Redes de Computadores
>    - CCNA Modulo II
>    - Lattes: *http://lattes.cnpq.br/1591329268136905*
> 
> 
> Esta mensagem pode conter informações confidenciais e/ou privilegiadas. Se
> você não for o destinatário ou a pessoa autorizada a receber esta mensagem,
> não deve usar, copiar ou divulgar as informações nela contida ou tomar
> qualquer ação baseada nessas informações.
> 
> 
> 





More information about the samba-technical mailing list