Hello everyone! I am having a problem while demoting a DC. The DC i want to demotes is still online. When i try to use the command samba-tool domain demote this is the message i get: root at hoorn:/home/newhang# samba-tool domain demote ERROR: Current DC is still the owner of 2 role(s), use the role command to transfer roles to another DC root at hoorn:/home/newhang# But after a fsmo show, all the roles belongs to another DC. root at hoorn:/home/newhang# samba-tool fsmo show InfrastructureMasterRole owner: CN=NTDS Settings,CN=VOLENDAM,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=solid-optics,DC=local RidAllocationMasterRole owner: CN=NTDS Settings,CN=VOLENDAM,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=solid-optics,DC=local PdcEmulationMasterRole owner: CN=NTDS Settings,CN=VOLENDAM,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=solid-optics,DC=local DomainNamingMasterRole owner: CN=NTDS Settings,CN=VOLENDAM,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=solid-optics,DC=local SchemaMasterRole owner: CN=NTDS Settings,CN=VOLENDAM,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=solid-optics,DC=local root at hoorn:/home/newhang# Any suggestion? Thank you! Fernando --- Este mensaje no contiene virus ni malware porque la protecci?n de avast! Antivirus est? activa. http://www.avast.com
Hello Fernando, Am 18.07.2014 20:14, schrieb Fernando Rodriguez:> I am having a problem while demoting a DC. > > The DC i want to demotes is still online. When i try to use the command > samba-tool domain demote this is the message i get: > > root at hoorn:/home/newhang# samba-tool domain demote > ERROR: Current DC is still the owner of 2 role(s), use the role command > to transfer roles to another DC > root at hoorn:/home/newhang# > > But after a fsmo show, all the roles belongs to another DC. > root at hoorn:/home/newhang# samba-tool fsmo show > InfrastructureMasterRole owner: CN=NTDS > Settings,CN=VOLENDAM,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=solid-optics,DC=local > > RidAllocationMasterRole owner: CN=NTDS > Settings,CN=VOLENDAM,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=solid-optics,DC=local > > PdcEmulationMasterRole owner: CN=NTDS > Settings,CN=VOLENDAM,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=solid-optics,DC=local > > DomainNamingMasterRole owner: CN=NTDS > Settings,CN=VOLENDAM,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=solid-optics,DC=local > > SchemaMasterRole owner: CN=NTDS > Settings,CN=VOLENDAM,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=solid-optics,DC=localSounds a bit like a split brain situation, that should never occour. Do you have an idea what could cause that? Who does your other DC(s) think, the 5 roles belong to? Is the replication between the DCs still working correct? Then try transfering/seizing all roles back to the DC you want to demote and then to an other again. If this doesn't help or the replication is broken, then we need to discuss different ways. Regards, Marc
Possibly Parallel Threads
- Failed to bind to uuid (GUID)._msdcs.DOMAIN NT_STATUS_NO_LOGON_SERVERS & IRPC callback failed for DsReplicaSync - NT_STATUS_IO_TIMEOUT
- Fwd: Re: demote DC
- Samba 4.8 RODC not working
- [Samba 4.5] Very slow LDAP Queries (almost unusable), performance tunning ?
- Plotting confidence intervals of two response on same graph (panel).