Basicly read: http://blogs.msmvps.com/acefekay/2010/01/03/the-dc-locator-process-the-logon-process-controlling-which-dc-responds-in-an-ad-site-and-srv-records/ https://technet.microsoft.com/en-us/library/cc787370(WS.10).aspx ( you can set the registry changes in the GPO ) now check this very handy site. https://www.windows-security.org/75572f3b66d75af8132ec77996f09a0c/net-logon yeah, i can tell exact what to do, but its best your read a bit about it, so you understand what you changing. ;-) Greetz, Louis> -----Oorspronkelijk bericht----- > Van: samba [mailto:samba-bounces at lists.samba.org] Namens Sébastien Le Ray > Verzonden: vrijdag 8 april 2016 9:59 > Aan: samba at lists.samba.org > Onderwerp: Re: [Samba] GPO, multiple DCs, sites and sysvol > > > Le 08/04/2016 09:54, L.P.H. van Belle a écrit : > > Yes, something like. > > > > > https://wiki.samba.org/index.php/Bidirectional_Rsync/Unison_based_SysVol_r > eplication_workaround > > Don't care, I always edit GPO on PDC FSMO DC and rsync from there > > > > https://wiki.samba.org/index.php/Active_Directory_Sites > > Yes, I use them, it works for the DC selection but GPO are still fetched > in a round robin fashion > > > and if needed you can also set a "prefferred" server per OU or site in > GPO. > > THIS is the piece of info I was missing :-) > Do you know what is the name of this GPO? > > Regards > > -- > To unsubscribe from this list go to the following URL and read the > instructions: https://lists.samba.org/mailman/options/samba
This is all about DC location My workstations are correctly assigned to sites and correctly use their site DC to authenticate But this does not apply to Sysvol connection establishement (I saw a workstation on site A, authenticated on DC of site A (alive), fetching GPO from site B, no matter the configuration). To me it seems to be related to the lack of DFS handling Regards Le 08/04/2016 10:20, L.P.H. van Belle a écrit :> Basicly read: > http://blogs.msmvps.com/acefekay/2010/01/03/the-dc-locator-process-the-logon-process-controlling-which-dc-responds-in-an-ad-site-and-srv-records/ > > https://technet.microsoft.com/en-us/library/cc787370(WS.10).aspx > ( you can set the registry changes in the GPO ) > > now check this very handy site. > https://www.windows-security.org/75572f3b66d75af8132ec77996f09a0c/net-logon > > yeah, i can tell exact what to do, but its best your read a bit about it, so you understand what you changing. ;-) > > > Greetz, > > Louis >
Next to previous post, Create a a Site-level GPO, your now use the "cross-domain GPO" Have a look here also, here its bit explained. https://blogs.technet.microsoft.com/musings_of_a_technical_tam/2012/02/13/group-policy-basics-part-1-understanding-the-structure-of-a-group-policy-object/ and yes, DFS handling in samba would be great, but that not finished (yet) Greetz, Louis> -----Oorspronkelijk bericht----- > Van: samba [mailto:samba-bounces at lists.samba.org] Namens Sébastien Le Ray > Verzonden: vrijdag 8 april 2016 10:34 > Aan: samba at lists.samba.org > Onderwerp: Re: [Samba] GPO, multiple DCs, sites and sysvol > > This is all about DC location > My workstations are correctly assigned to sites and correctly use their > site DC to authenticate > But this does not apply to Sysvol connection establishement (I saw a > workstation on site A, authenticated on DC of site A (alive), fetching > GPO from site B, no matter the configuration). To me it seems to be > related to the lack of DFS handling > > Regards > > Le 08/04/2016 10:20, L.P.H. van Belle a écrit : > > Basicly read: > > http://blogs.msmvps.com/acefekay/2010/01/03/the-dc-locator-process-the- > logon-process-controlling-which-dc-responds-in-an-ad-site-and-srv-records/ > > > > https://technet.microsoft.com/en-us/library/cc787370(WS.10).aspx > > ( you can set the registry changes in the GPO ) > > > > now check this very handy site. > > https://www.windows-security.org/75572f3b66d75af8132ec77996f09a0c/net- > logon > > > > yeah, i can tell exact what to do, but its best your read a bit about > it, so you understand what you changing. ;-) > > > > > > Greetz, > > > > Louis > > > > > -- > To unsubscribe from this list go to the following URL and read the > instructions: https://lists.samba.org/mailman/options/samba
On 12:12:58 wrote Sébastien Le Ray:> This is all about DC location > My workstations are correctly assigned to sites and correctly use > their site DC to authenticate > But this does not apply to Sysvol connection establishement (I saw a > workstation on site A, authenticated on DC of site A (alive), > fetching GPO from site B, no matter the configuration). To me it > seems to be related to the lack of DFS handlingread this https://gancrz.wordpress.com/2013/02/13/domain-controller-locator-process/ at the buttom you will find some information about "DFS referral for the SYSVOL or NETLOGON"> Regards > > Le 08/04/2016 10:20, L.P.H. van Belle a écrit : > > Basicly read: > > http://blogs.msmvps.com/acefekay/2010/01/03/the-dc-locator-process- > > the-logon-process-controlling-which-dc-responds-in-an-ad-site-and-s > > rv-records/ > > > > https://technet.microsoft.com/en-us/library/cc787370(WS.10).aspx > > ( you can set the registry changes in the GPO ) > > > > now check this very handy site. > > https://www.windows-security.org/75572f3b66d75af8132ec77996f09a0c/n > > et-logon > > > > yeah, i can tell exact what to do, but its best your read a bit > > about it, so you understand what you changing. ;-) > > > > > > Greetz, > > > > Louis-- Regards Harry Jede