Stefan G. Weichinger
2019-Jul-31 16:03 UTC
[Samba] GPO issues - getting SYSVOL cleaned up again
Am 31.07.19 um 17:54 schrieb Stefan G. Weichinger via samba:> Am 31.07.19 um 17:33 schrieb L.P.H. van Belle via samba: > >> Which is the DC with FSMO roles, if its DC1 then move them to pre01svdeb03.pilsbacher.at >> Remove/purge this DC and join clean again. ( no need to reinstall os etc. just samba ) > > What? > > uninstall samba? > or unjoin from domain only? > > "reinstall samba" ? > > pls specifyAh, I understand this (correct me): mv FSMO-roles to pre01svdeb03 unjoin stop and totally cleanup pre01svdeb02 ... cleanup DNS at last rejoin pre01svdeb02 (= essentially joining a new DC here, right?) . correct ?
Stefan G. Weichinger
2019-Jul-31 16:07 UTC
[Samba] GPO issues - getting SYSVOL cleaned up again
Am 31.07.19 um 18:03 schrieb Stefan G. Weichinger via samba:> Am 31.07.19 um 17:54 schrieb Stefan G. Weichinger via samba: >> Am 31.07.19 um 17:33 schrieb L.P.H. van Belle via samba: >> >>> Which is the DC with FSMO roles, if its DC1 then move them to pre01svdeb03.pilsbacher.at >>> Remove/purge this DC and join clean again. ( no need to reinstall os etc. just samba ) >> >> What? >> >> uninstall samba? >> or unjoin from domain only? >> >> "reinstall samba" ? >> >> pls specify > > Ah, I understand this (correct me): > > mv FSMO-roles to pre01svdeb03root at pre01svdeb03:~# samba-tool fsmo transfer --role=all -UAdministrator FSMO transfer of 'rid' role successful FSMO transfer of 'pdc' role successful FSMO transfer of 'naming' role successful FSMO transfer of 'infrastructure' role successful FSMO transfer of 'schema' role successful lpcfg_load: refreshing parameters from /etc/samba/smb.conf Password for [BUERO\Administrator]: ERROR: Failed to delete role 'domaindns': LDAP error 16 LDAP_NO_SUCH_ATTRIBUTE - <attribute 'fSMORoleOwner': no matching attribute value while deleting attribute on 'CN=Infrastructure,DC=DomainDnsZones,DC=pilsbacher,DC=at'> <> root at pre01svdeb03:~# samba-tool fsmo transfer --role=all -UAdministrator This DC already has the 'rid' FSMO role This DC already has the 'pdc' FSMO role This DC already has the 'naming' FSMO role This DC already has the 'infrastructure' FSMO role This DC already has the 'schema' FSMO role lpcfg_load: refreshing parameters from /etc/samba/smb.conf Password for [BUERO\Administrator]: ERROR: Failed to delete role 'domaindns': LDAP error 16 LDAP_NO_SUCH_ATTRIBUTE - <attribute 'fSMORoleOwner': no matching attribute value while deleting attribute on 'CN=Infrastructure,DC=DomainDnsZones,DC=pilsbacher,DC=at'> <> root at pre01svdeb03:~# root at pre01svdeb03:~# root at pre01svdeb03:~# samba-tool fsmo show SchemaMasterRole owner: CN=NTDS Settings,CN=PRE01SVDEB03,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=pilsbacher,DC=at InfrastructureMasterRole owner: CN=NTDS Settings,CN=PRE01SVDEB03,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=pilsbacher,DC=at RidAllocationMasterRole owner: CN=NTDS Settings,CN=PRE01SVDEB03,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=pilsbacher,DC=at PdcEmulationMasterRole owner: CN=NTDS Settings,CN=PRE01SVDEB03,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=pilsbacher,DC=at DomainNamingMasterRole owner: CN=NTDS Settings,CN=PRE01SVDEB03,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=pilsbacher,DC=at DomainDnsZonesMasterRole owner: CN=NTDS Settings,CN=PRE01SVDEB02,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=pilsbacher,DC=at ForestDnsZonesMasterRole owner: CN=NTDS Settings,CN=PRE01SVDEB02,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=pilsbacher,DC=at
Stefan G. Weichinger
2019-Jul-31 16:27 UTC
[Samba] GPO issues - getting SYSVOL cleaned up again
"--seize" helped: root at pre01svdeb03:~# samba-tool fsmo show SchemaMasterRole owner: CN=NTDS Settings,CN=PRE01SVDEB03,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=pilsbacher,DC=at InfrastructureMasterRole owner: CN=NTDS Settings,CN=PRE01SVDEB03,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=pilsbacher,DC=at RidAllocationMasterRole owner: CN=NTDS Settings,CN=PRE01SVDEB03,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=pilsbacher,DC=at PdcEmulationMasterRole owner: CN=NTDS Settings,CN=PRE01SVDEB03,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=pilsbacher,DC=at DomainNamingMasterRole owner: CN=NTDS Settings,CN=PRE01SVDEB03,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=pilsbacher,DC=at DomainDnsZonesMasterRole owner: CN=NTDS Settings,CN=PRE01SVDEB03,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=pilsbacher,DC=at ForestDnsZonesMasterRole owner: CN=NTDS Settings,CN=PRE01SVDEB03,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=pilsbacher,DC=at now for a break and some food stay tuned :-P