Mandi! Rowland penny via samba
In chel di` si favelave...
> Because it isn't strictly required, but it works better with it.
Ok, this sounds better to me. Supposing i'm not using it. ;-)
> > But i've clerly master/slave setup, all DC have a
'standard' conf using
> > bind_DLZ, as wiki suggest.
> No you haven't, all AD DC's running a dns server are masters, it is
known as
> multimaster, there are no 'slaves'.
Sorry, i've misunderstood/miswritten: i meant i've integrated (via glue
record and forward zones) my 'primary' DNS setup and my AD DNS setup.
They are not isolated and speaks between them.
> > Why domains seamsd healty but does not replicate DNS data?!
> No idea, but you do seem to have replication problems, my DC's always
> produce the same result.
OK. How can i test/debug DNS replication issue?
> > tkey-gssapi-keytab "/var/lib/samba/private/dns.keytab";
> Aha, wrong path, it is now '/var/lib/samba/bind-dns/dns.keytab'
> Can you provide a link to where it says to use the 'old' path ?
No, docs is good, is me that i'm using an old samba version (4.10)
that still use 'private' dir also for DNS:
root at vdcsv1:~# LANG=C ls -la /var/lib/samba/private/dns.keytab
/var/lib/samba/bind-dns/dns.keytab
ls: cannot access '/var/lib/samba/bind-dns/dns.keytab': No such file or
directory
-rw-r----- 1 root bind 777 Sep 20 2017 /var/lib/samba/private/dns.keytab
> > Setting:
> > dns update command = /usr/sbin/samba_dnsupdate --use-samba-tool
> > in smb,conf could be a useful workaround?
> That only works for the default dns records, not the client records.
OK, thanks.
--
dott. Marco Gaiarin GNUPG Key ID: 240A3D66
Associazione ``La Nostra Famiglia''
http://www.lanostrafamiglia.it/
Polo FVG - Via della Bont?, 7 - 33078 - San Vito al Tagliamento (PN)
marco.gaiarin(at)lanostrafamiglia.it t +39-0434-842711 f +39-0434-842797
Dona il 5 PER MILLE a LA NOSTRA FAMIGLIA!
http://www.lanostrafamiglia.it/index.php/it/sostienici/5x1000
(cf 00307430132, categoria ONLUS oppure RICERCA SANITARIA)