Stefan G. Weichinger
2021-Dec-17 10:18 UTC
[Samba] samba 4.14.10: DC, netlogon: folders disappear
Strange behavior: I have 2 samba-4.14.10 DCs on Debian 11.1 For rolling out a software I try to create shared directories in \\DC\netlogon I create them within Windows Explorer on a domain member server. I can create the folders, see them in the linux filesystem, permissions seem ok. Within a minute or so that folder is GONE again. What could cause that? Haven't changed config for more than a year or so. testparm: # Global parameters [global] dns forwarder = 8.8.8.8 ldap server require strong auth = No load printers = No passdb backend = samba_dsdb printcap name = /dev/null realm = mydom.AT server role = active directory domain controller template shell = /bin/bash time server = Yes usershare path workgroup = BUERO rpc_server:tcpip = no rpc_daemon:spoolssd = embedded rpc_server:spoolss = embedded rpc_server:winreg = embedded rpc_server:ntsvcs = embedded rpc_server:eventlog = embedded rpc_server:srvsvc = embedded rpc_server:svcctl = embedded rpc_server:default = external winbindd:use external pipes = true sdb:schema update allowed = no idmap_ldb:use rfc2307 = yes idmap config * : backend = tdb map archive = No vfs objects = dfs_samba4 acl_xattr [netlogon] path = /var/lib/samba/sysvol/mydom.at/scripts read only = No acl_xattr:ignore system acls = Yes [sysvol] path = /var/lib/samba/sysvol read only = No acl_xattr:ignore system acls = Yes [rsnapshots] path = /mnt/rsnapshots valid users = @rsnapshots
spindles seven
2021-Dec-17 12:43 UTC
[Samba] samba 4.14.10: DC, netlogon: folders disappear
On 17 December 2021 10:18 Stefan G. Weichinger via samba wrote:> Strange behavior: > > I have 2 samba-4.14.10 DCs on Debian 11.1 > > For rolling out a software I try to create shared directories in > \\DC\netlogon > > I create them within Windows Explorer on a domain member server. > > I can create the folders, see them in the linux filesystem, permissions > seem ok. > > Within a minute or so that folder is GONE again. What could cause that?Just a guess - sysvol replication? How have you replicated SYSVOL between the DCs? Maybe you created the folders on the DC not holding the PDC Emulator FSMO role and it's a one-way synchronisation? eg mirror rather than synchronisation both ways? HTH, Roy