Luca Bertoncello
2016-Apr-08 05:18 UTC
[Samba] Samba as AD-Controller: unable to update policies and call start scripts
Rowland penny <rpenny at samba.org> schrieb:> I think you will find this is the sharepath of the sysvol directory on > the DC, i.e. on a self compiled Samba it will be: > > [sysvol] > path = /usr/local/samba/var/locks/sysvol > read only = No > > What I think you are un-aware of is, the sysvol dir is not synced > between DCs, so your sysvol on your second DC may only contain the > default GPOs, see here for more info:I just have ONE DC... Any other idea? Maybe is it possible that my tries with Samba as AD (this is my first installation of Samba 4 as AD controller) damages the AD-data? How can I drop all and restart without reinstalling the Server? Thanks Luca Bertoncello (lucabert at lucabert.de)
Rowland penny
2016-Apr-08 06:50 UTC
[Samba] Samba as AD-Controller: unable to update policies and call start scripts
On 08/04/16 06:18, Luca Bertoncello wrote:> Rowland penny <rpenny at samba.org> schrieb: > >> I think you will find this is the sharepath of the sysvol directory on >> the DC, i.e. on a self compiled Samba it will be: >> >> [sysvol] >> path = /usr/local/samba/var/locks/sysvol >> read only = No >> >> What I think you are un-aware of is, the sysvol dir is not synced >> between DCs, so your sysvol on your second DC may only contain the >> default GPOs, see here for more info: > I just have ONE DC...Sorry, mis-read what you wrote, I thought you were trying to join another DC> Any other idea? > > Maybe is it possible that my tries with Samba as AD (this is my first > installation of Samba 4 as AD controller) damages the AD-data?Well if it works for one PC and not another, it is probably a problem with the second PC.> How can I drop all and restart without reinstalling the Server?You could try restarting Samba on the DC as a first step. If that doesn't work, you will need to backup the required files, Samba comes with a script to do this 'samba-backup' though you may have to alter the paths in it. You could then re-install Samba and re-install your backup. It may help if you could tell us how you installed Samba, did you follow a webpage and if so which one ? Rowland> Thanks > Luca Bertoncello > (lucabert at lucabert.de) >
Luca Bertoncello
2016-Apr-08 07:05 UTC
[Samba] Samba as AD-Controller: unable to update policies and call start scripts
Zitat von Rowland penny <rpenny at samba.org>:>> Maybe is it possible that my tries with Samba as AD (this is my first >> installation of Samba 4 as AD controller) damages the AD-data? > > Well if it works for one PC and not another, it is probably a > problem with the second PC.Now I cannot update GPO on the first PC, too... The very strange thing is, that gpupdate tries to copy somethings from \\cch.intra\sysvol and not from \\dc1\sysvol... There a no server with name cch.intra, this is just the Realm... Another strange thing is, hat I see a server with name CCH-SRV, that I don't have in my network...>> How can I drop all and restart without reinstalling the Server? > > You could try restarting Samba on the DC as a first step. If that > doesn't work, you will need to backup the required files, Samba comesAlready done, didn't help...> with a script to do this 'samba-backup' though you may have to alter > the paths in it.I don't have this script...> You could then re-install Samba and re-install your backup.Well, there a not yet many users in the domain, so that I have no problem to complete delete the domain and recreate all... How can I do that? Thanks Luca Bertoncello (lucabert at lucabert.de)
L.P.H. van Belle
2016-Apr-08 07:25 UTC
[Samba] Samba as AD-Controller: unable to update policies and call start scripts
This is correct>>that gpupdate tries to copy somethings from \\cch.intra\sysvol and not from \\dc1\sysvol...>>There a no server with name cch.intra, this is just the Realm...No not REALM, but DNSdomain but with the same name as the REALM. You “should” be able to “ping cch.intra” or browse to \\cch.intra if not, then your missing dns records. If you have only windows users accessing sysvol Change your sysvol to> [sysvol]> path = /usr/local/samba/var/locks/sysvol> read only = No> acl_xattr:ignore system acls = yesWhich helps, because you can set better windows ACLs. But most important, it helps if you post your smb.conf here. And before deleting your domain, if you do the same, you end up with the same problem. The “old PC” i guess windows 7? The New PC, i guess windows 10? Static ip of DHCP ip? So more info wil help. Smb.conf also maybe? Greetz, Louis> -----Oorspronkelijk bericht-----> Van: samba [mailto:samba-bounces at lists.samba.org] Namens Luca Bertoncello> Verzonden: vrijdag 8 april 2016 9:06> Aan: samba at lists.samba.org> Onderwerp: Re: [Samba] Samba as AD-Controller: unable to update policies> and call start scripts>> Zitat von Rowland penny <rpenny at samba.org>:>> >> Maybe is it possible that my tries with Samba as AD (this is my first> >> installation of Samba 4 as AD controller) damages the AD-data?> >> > Well if it works for one PC and not another, it is probably a> > problem with the second PC.>> Now I cannot update GPO on the first PC, too...>> The very strange thing is, that gpupdate tries to copy somethings from> \\cch.intra\sysvol and not from \\dc1\sysvol...> There a no server with name cch.intra, this is just the Realm...>> Another strange thing is, hat I see a server with name CCH-SRV, that I> don't have in my network...>> >> How can I drop all and restart without reinstalling the Server?> >> > You could try restarting Samba on the DC as a first step. If that> > doesn't work, you will need to backup the required files, Samba comes>> Already done, didn't help...>> > with a script to do this 'samba-backup' though you may have to alter> > the paths in it.>> I don't have this script...>> > You could then re-install Samba and re-install your backup.>> Well, there a not yet many users in the domain, so that I have no> problem to complete delete the domain and recreate all...> How can I do that?>> Thanks> Luca Bertoncello> (lucabert at lucabert.de)>>> --> To unsubscribe from this list go to the following URL and read the> instructions: https://lists.samba.org/mailman/options/samba
Maybe Matching Threads
- Samba as AD-Controller: unable to update policies and call start scripts
- Samba as AD-Controller: unable to update policies and call start scripts
- Samba as AD-Controller: unable to update policies and call start scripts
- Home directory of AD-User
- Samba as AD-Controller: unable to update policies and call start scripts