Andreas Oster
2014-Mar-14  11:48 UTC
[Samba] outbound replication of newly added DC not working
Hi all,
I have just added a DC to our existing AD. Join did work without any
error messages but now I have recognized that only inbound replication
from old DCs is working outbound list is empty.
Samba version is: Version 4.2.0pre1-GIT-cff0f8e
here is the output of samba-tool drs showrepl:
DSA Options: 0x00000001
DSA object GUID: 94534f65-5d06-41f5-844d-a58a0bc03c93
DSA invocationId: 3db6f686-cbd9-4ef8-992d-1ae1671e6c17
==== INBOUND NEIGHBORS ===
DC=sambadom,DC=com
        Standardname-des-ersten-Standorts\dc02 via RPC
                DSA object GUID: ef37f4de-a03c-493c-96f6-e521a5415d81
                Last attempt @ Fri Mar 14 12:41:07 2014 CET was successful
                0 consecutive failure(s).
                Last success @ Fri Mar 14 12:41:07 2014 CET
DC=sambadom,DC=com
        Standardname-des-ersten-Standorts\dc01 via RPC
                DSA object GUID: c60bca82-df6e-409e-85c5-e2cc733691da
                Last attempt @ Fri Mar 14 12:40:36 2014 CET was successful
                0 consecutive failure(s).
                Last success @ Fri Mar 14 12:40:36 2014 CET
DC=ForestDnsZones,DC=sambadom,DC=com
        Standardname-des-ersten-Standorts\dc02 via RPC
                DSA object GUID: ef37f4de-a03c-493c-96f6-e521a5415d81
                Last attempt @ Fri Mar 14 12:41:05 2014 CET was successful
                0 consecutive failure(s).
                Last success @ Fri Mar 14 12:41:05 2014 CET
DC=ForestDnsZones,DC=sambadom,DC=com
        Standardname-des-ersten-Standorts\dc01 via RPC
                DSA object GUID: c60bca82-df6e-409e-85c5-e2cc733691da
                Last attempt @ Fri Mar 14 12:40:38 2014 CET was successful
                0 consecutive failure(s).
                Last success @ Fri Mar 14 12:40:38 2014 CET
CN=Configuration,DC=sambadom,DC=com
        Standardname-des-ersten-Standorts\dc02 via RPC
                DSA object GUID: ef37f4de-a03c-493c-96f6-e521a5415d81
                Last attempt @ Fri Mar 14 12:41:09 2014 CET was successful
                0 consecutive failure(s).
                Last success @ Fri Mar 14 12:41:09 2014 CET
CN=Configuration,DC=sambadom,DC=com
        Standardname-des-ersten-Standorts\dc01 via RPC
                DSA object GUID: c60bca82-df6e-409e-85c5-e2cc733691da
                Last attempt @ Fri Mar 14 12:40:39 2014 CET was successful
                0 consecutive failure(s).
                Last success @ Fri Mar 14 12:40:39 2014 CET
DC=DomainDnsZones,DC=sambadom,DC=com
        Standardname-des-ersten-Standorts\dc02 via RPC
                DSA object GUID: ef37f4de-a03c-493c-96f6-e521a5415d81
                Last attempt @ Fri Mar 14 12:41:15 2014 CET was successful
                0 consecutive failure(s).
                Last success @ Fri Mar 14 12:41:15 2014 CET
DC=DomainDnsZones,DC=sambadom,DC=com
        Standardname-des-ersten-Standorts\dc01 via RPC
                DSA object GUID: c60bca82-df6e-409e-85c5-e2cc733691da
                Last attempt @ Fri Mar 14 12:40:41 2014 CET was successful
                0 consecutive failure(s).
                Last success @ Fri Mar 14 12:40:41 2014 CET
CN=Schema,CN=Configuration,DC=sambadom,DC=com
        Standardname-des-ersten-Standorts\dc02 via RPC
                DSA object GUID: ef37f4de-a03c-493c-96f6-e521a5415d81
                Last attempt @ Fri Mar 14 12:41:12 2014 CET was successful
                0 consecutive failure(s).
                Last success @ Fri Mar 14 12:41:12 2014 CET
CN=Schema,CN=Configuration,DC=sambadom,DC=com
        Standardname-des-ersten-Standorts\dc01 via RPC
                DSA object GUID: c60bca82-df6e-409e-85c5-e2cc733691da
                Last attempt @ Fri Mar 14 12:40:42 2014 CET was successful
                0 consecutive failure(s).
                Last success @ Fri Mar 14 12:40:42 2014 CET
==== OUTBOUND NEIGHBORS ===
==== KCC CONNECTION OBJECTS ===
Connection --
        Connection name: dc01
        Enabled        : TRUE
        Server DNS name : dc01.sambadom.com
        Server DN name  : CN=NTDS
Settings,CN=dc01,CN=Servers,CN=Standardname-des-ersten-Standorts,CN=Sites,CN=Configuration,DC=sambadom,DC=com
                TransportType: RPC
                options: 0x00000000
Warning: No NC replicated for Connection!
Connection --
        Connection name: dc02
        Enabled        : TRUE
        Server DNS name : dc02.sambadom.com
        Server DN name  : CN=NTDS
Settings,CN=dc02,CN=Servers,CN=Standardname-des-ersten-Standorts,CN=Sites,CN=Configuration,DC=sambadom,DC=com
                TransportType: RPC
                options: 0x00000000
Warning: No NC replicated for Connection!
( I have replaced domain and DC names in the output text !)
Does anybody know how to fix this issue and get outbound replication to
work ?
I have already tried to demote and re-join the new DC, but this did not
help. I have also checked the DNS entries and those seem to be OK.
Thank you for your kind help
best regards
Andreas
news.gmane.org
2014-Mar-18  11:09 UTC
[Samba] outbound replication of newly added DC not working
Am 14.03.2014 12:48, schrieb Andreas Oster:> Hi all, > > I have just added a DC to our existing AD. Join did work without any > error messages but now I have recognized that only inbound replication > from old DCs is working outbound list is empty. > > Samba version is: Version 4.2.0pre1-GIT-cff0f8e > > here is the output of samba-tool drs showrepl: > > DSA Options: 0x00000001 > DSA object GUID: 94534f65-5d06-41f5-844d-a58a0bc03c93 > DSA invocationId: 3db6f686-cbd9-4ef8-992d-1ae1671e6c17 > > ==== INBOUND NEIGHBORS ===> > DC=sambadom,DC=com > Standardname-des-ersten-Standorts\dc02 via RPC > DSA object GUID: ef37f4de-a03c-493c-96f6-e521a5415d81 > Last attempt @ Fri Mar 14 12:41:07 2014 CET was successful > 0 consecutive failure(s). > Last success @ Fri Mar 14 12:41:07 2014 CET > > DC=sambadom,DC=com > Standardname-des-ersten-Standorts\dc01 via RPC > DSA object GUID: c60bca82-df6e-409e-85c5-e2cc733691da > Last attempt @ Fri Mar 14 12:40:36 2014 CET was successful > 0 consecutive failure(s). > Last success @ Fri Mar 14 12:40:36 2014 CET > > DC=ForestDnsZones,DC=sambadom,DC=com > Standardname-des-ersten-Standorts\dc02 via RPC > DSA object GUID: ef37f4de-a03c-493c-96f6-e521a5415d81 > Last attempt @ Fri Mar 14 12:41:05 2014 CET was successful > 0 consecutive failure(s). > Last success @ Fri Mar 14 12:41:05 2014 CET > > DC=ForestDnsZones,DC=sambadom,DC=com > Standardname-des-ersten-Standorts\dc01 via RPC > DSA object GUID: c60bca82-df6e-409e-85c5-e2cc733691da > Last attempt @ Fri Mar 14 12:40:38 2014 CET was successful > 0 consecutive failure(s). > Last success @ Fri Mar 14 12:40:38 2014 CET > > CN=Configuration,DC=sambadom,DC=com > Standardname-des-ersten-Standorts\dc02 via RPC > DSA object GUID: ef37f4de-a03c-493c-96f6-e521a5415d81 > Last attempt @ Fri Mar 14 12:41:09 2014 CET was successful > 0 consecutive failure(s). > Last success @ Fri Mar 14 12:41:09 2014 CET > > CN=Configuration,DC=sambadom,DC=com > Standardname-des-ersten-Standorts\dc01 via RPC > DSA object GUID: c60bca82-df6e-409e-85c5-e2cc733691da > Last attempt @ Fri Mar 14 12:40:39 2014 CET was successful > 0 consecutive failure(s). > Last success @ Fri Mar 14 12:40:39 2014 CET > > DC=DomainDnsZones,DC=sambadom,DC=com > Standardname-des-ersten-Standorts\dc02 via RPC > DSA object GUID: ef37f4de-a03c-493c-96f6-e521a5415d81 > Last attempt @ Fri Mar 14 12:41:15 2014 CET was successful > 0 consecutive failure(s). > Last success @ Fri Mar 14 12:41:15 2014 CET > > DC=DomainDnsZones,DC=sambadom,DC=com > Standardname-des-ersten-Standorts\dc01 via RPC > DSA object GUID: c60bca82-df6e-409e-85c5-e2cc733691da > Last attempt @ Fri Mar 14 12:40:41 2014 CET was successful > 0 consecutive failure(s). > Last success @ Fri Mar 14 12:40:41 2014 CET > > CN=Schema,CN=Configuration,DC=sambadom,DC=com > Standardname-des-ersten-Standorts\dc02 via RPC > DSA object GUID: ef37f4de-a03c-493c-96f6-e521a5415d81 > Last attempt @ Fri Mar 14 12:41:12 2014 CET was successful > 0 consecutive failure(s). > Last success @ Fri Mar 14 12:41:12 2014 CET > > CN=Schema,CN=Configuration,DC=sambadom,DC=com > Standardname-des-ersten-Standorts\dc01 via RPC > DSA object GUID: c60bca82-df6e-409e-85c5-e2cc733691da > Last attempt @ Fri Mar 14 12:40:42 2014 CET was successful > 0 consecutive failure(s). > Last success @ Fri Mar 14 12:40:42 2014 CET > > ==== OUTBOUND NEIGHBORS ===> > ==== KCC CONNECTION OBJECTS ===> > Connection -- > Connection name: dc01 > Enabled : TRUE > Server DNS name : dc01.sambadom.com > Server DN name : CN=NTDS > Settings,CN=dc01,CN=Servers,CN=Standardname-des-ersten-Standorts,CN=Sites,CN=Configuration,DC=sambadom,DC=com > TransportType: RPC > options: 0x00000000 > Warning: No NC replicated for Connection! > Connection -- > Connection name: dc02 > Enabled : TRUE > Server DNS name : dc02.sambadom.com > Server DN name : CN=NTDS > Settings,CN=dc02,CN=Servers,CN=Standardname-des-ersten-Standorts,CN=Sites,CN=Configuration,DC=sambadom,DC=com > TransportType: RPC > options: 0x00000000 > Warning: No NC replicated for Connection! > > ( I have replaced domain and DC names in the output text !) > > > Does anybody know how to fix this issue and get outbound replication to > work ? > > I have already tried to demote and re-join the new DC, but this did not > help. I have also checked the DNS entries and those seem to be OK. > > Thank you for your kind help > > best regards > > Andreas >Hi all, I have been able to manually start outbound replication by issuing "samba-tool drs replicate" for all the missing outbound NCs. Thanks best regards Andreas