Displaying 20 results from an estimated 135 matches for "chester".
2016 May 13
3
Invalid data for index DN=@INDEX:OBJECTCLASS:DNSNODE
...just fine,
and we can modify IPs for existing records, but it will not delete or
add new records. Attempting to delete via the AD tools shows "Local
security authority database contains an internal inconsistency". Adding
a record on the command line shows:
> samba-tool dns add empire chester-dc.example.com p-bats A 10.4.4.141
-U ash
> Password for [CHESTER-DC\ash]:
> ERROR(runtime): uncaught exception - (1383, 'WERR_INTERNAL_DB_ERROR')
> File "/usr/lib/python2.7/dist-packages/samba/netcmd/__init__.py",
line 175, in _run
> return self.run(*args, **kwa...
2016 Sep 09
1
Phantom DNS records visible with dig, but not samba-tool dns
...'m trying to clean up some DNS records which don't seem to have been cleaned).
All machines are 4.2.10-Debian
Can anybody advise how I can fix this? Ideally in this case there would only be two records.
Console output follows
Thanks,
root at v-ward# samba-tool dns query v-ward _msdcs.chester-dc.example.com _ldap._tcp.dc srv
Password for [ash at CHESTER-DC.EXAMPLE.COM]:
Name=, Records=3, Children=0
SRV: HAWAII.chester-dc.example.com. (389, 0, 100) (flags=f0, serial=110, ttl=900)
SRV: ALASKA.chester-dc.example.com. (389, 0, 100) (flags=f0, serial=110, ttl=900)
SRV: v-fi...
2016 Sep 13
1
Phantom DNS records visible with dig, but not samba-tool dns
...f
> changes), I get:
>
> Error: First line of ldif must be a dn not 'dnsRecord'
>
> I get this even if I'm editing a seemingly valid DNS record.
>
> The broken record is:
>
> # editing 1 records
> # record 1
> dn:
> DC=_ldap._tcp.dc,DC=_msdcs.chester-dc.example.com,CN=MicrosoftDNS,DC=ForestDnsZones,DC=chester-dc,DC=example,DC=com
> objectClass: top objectClass: dnsNode
> instanceType: 4
> whenCreated: 20140528144629.0Z
> uSNCreated: 18305
> showInAdvancedViewOnly: TRUE
> name: _ldap._tcp.dc
> objectGUID: bf3c8f60-48d9-43d4-...
2016 May 19
3
error during DRS repl ADD: No rDN found in replPropertyMetaData
...pdates correctly, all systems are 4.2.10-Debian, and we've been able to
add a user and a new DC. (Thanks for the help!)
Synchronisation between v-ward (the new local DC), and empire isn't
entirely working, though.
> root at v-ward:/home/abc# /usr/bin/samba-tool drs replicate
v-ward.chester-dc.example.com empire.chester-dc.example.com
DC=DomainDnsZones,DC=chester-dc,DC=example,DC=com
> ERROR(<class 'samba.drs_utils.drsException'>): DsReplicaSync failed -
drsException: DsReplicaSync failed (58, 'WERR_BAD_NET_RESP')
> File "/usr/lib/python2.7/dist-...
2016 May 13
2
Fwd: Re: Invalid data for index DN=@INDEX:OBJECTCLASS:DNSNODE
...use the 'Administrator' user.
I've repeated the "samba-tool dns add", and the "samba-tool domain join"
commands with "-UAdministrator". I get the same errors with either user.
(the error for domain join is now the following)
> samba-tool domain join chester-dc.comtek.co.uk DC -Uash
--realm=CHESTER-DC.COMTEK.CO.UK
> Finding a writeable DC for domain 'chester-dc.comtek.co.uk'
> Found DC empire.chester-dc.comtek.co.uk
> Password for [CHESTER-DC\ash]:
> workgroup is CHESTER-DC
> realm is chester-dc.comtek.co.uk
> checking...
2016 Sep 12
3
Phantom DNS records visible with dig, but not samba-tool dns
...; On 09/09/16 16:35, lingpanda101--- via samba wrote:
> >> On 9/9/2016 10:59 AM, ash-samba--- via samba wrote:
> >>> We appear to have some phantom DNS records on both our domain
> >>> controllers.
> >>> [...]
> >>> # dig _ldap._tcp.dc._msdcs.chester-dc.example.com srv @10.4.4.155
> >>> [...]
> >>>
> >>
> >> For me I had to use ADSI edit to remove the entries.
> >>
> > I've managed to locate the entries using ADSI edit ( for any future
> > archive readers, open ADSI edit, and th...
2016 May 17
2
Duplicate ObjectSid values
...t;> This is a serious situation. What it means is that the nextRid value
>> for that DC points at a user account that already exists, so when we
>> go to create it, the create fails.
> I've just looked at the LDAP output, and nextRid is 1000 for both dn:
> CN=Builtin,DC=chester-dc,etc and for dn: DC=chester-dc,etc
Same here.
>
> The most recent successful new user (that I'm aware of) is objectSid:
> S-1-5-21-2702589905-558746101-3641499263-2825
>
> I can't see any objectSid entries which end in 1000 though. The lowest
> one we have is S-1-5-2...
2016 May 16
0
Invalid data for index DN=@INDEX:OBJECTCLASS:DNSNODE
...iven-name=test
--job-title=Storekeeper --department=Repairs
--mail-address=test.user at example.com --telephone-number=01244123456
--gid-number=513
> ERROR(ldb): Failed to add user 'test.user': -
../ldb_tdb/ldb_index.c:1216: Failed to re-index objectSid in CN=test
user,CN=Users,DC=chester-dc,DC=example,DC=com -
../ldb_tdb/ldb_index.c:1148: unique index violation on objectSid in
CN=test user,CN=Users,DC=chester-dc,DC=example,DC=com
We also can't add a DC:
> samba-tool domain join chester-dc.example.com DC -Uash
--realm=CHESTER-DC.EXAMPLE.COM
> Finding a writeable DC...
2016 May 23
0
error during DRS repl ADD: No rDN found in replPropertyMetaData
...are 4.2.10-Debian, and we've been able to add a user
> and a new DC. (Thanks for the help!)
>
> Synchronisation between v-ward (the new local DC), and empire isn't
> entirely working, though.
>
> > root at v-ward:/home/abc# /usr/bin/samba-tool drs replicate
> v-ward.chester-dc.example.com empire.chester-dc.example.com
> DC=DomainDnsZones,DC=chester-dc,DC=example,DC=com
> > ERROR(<class 'samba.drs_utils.drsException'>): DsReplicaSync failed -
> drsException: DsReplicaSync failed (58, 'WERR_BAD_NET_RESP')
> > File "/usr/lib...
2016 May 16
3
Invalid data for index DN=@INDEX:OBJECTCLASS:DNSNODE
> This certainly sounds stressful.
Yes!
> Another way to (on a backup, particularly given your history above) remove the index is with samba-tool dbcheck --reindex.
Re-indexing...
completed re-index OK
0 root at empire:~[0] samba-tool dns add empire chester-dc.example.com
p-cats A 10.4.4.142 -U ash
Password for [CHESTER-DC\ash]:
Record added successfully
Thanks!
> The missing ntSecurityDescriptor is a curious issue. Can you check if
> it or the whole record is really missing? I'm guessing it is another
> index issue, stopping us fin...
2016 May 13
0
Fwd: Re: Invalid data for index DN=@INDEX:OBJECTCLASS:DNSNODE
...ser.
> I've repeated the "samba-tool dns add", and the "samba-tool domain
> join" commands with "-UAdministrator". I get the same errors with
> either user.
>
> (the error for domain join is now the following)
>
> > samba-tool domain join chester-dc.comtek.co.uk DC -Uash
> --realm=CHESTER-DC.COMTEK.CO.UK
> > Finding a writeable DC for domain 'chester-dc.comtek.co.uk'
> > Found DC empire.chester-dc.comtek.co.uk
> > Password for [CHESTER-DC\ash]:
> > workgroup is CHESTER-DC
> > realm is chester-dc.com...
2016 Sep 13
0
Phantom DNS records visible with dig, but not samba-tool dns
...problem is that when I save and exit (even if I make no ldif
changes), I get:
Error: First line of ldif must be a dn not 'dnsRecord'
I get this even if I'm editing a seemingly valid DNS record.
The broken record is:
# editing 1 records
# record 1
dn: DC=_ldap._tcp.dc,DC=_msdcs.chester-dc.example.com,CN=MicrosoftDNS,DC=ForestDnsZones,DC=chester-dc,DC=example,DC=com
objectClass: top
objectClass: dnsNode
instanceType: 4
whenCreated: 20140528144629.0Z
uSNCreated: 18305
showInAdvancedViewOnly: TRUE
name: _ldap._tcp.dc
objectGUID: bf3c8f60-48d9-43d4-a6a3-d724352ae8e9
objectCategory: C...
2016 May 17
0
Duplicate ObjectSid values
...ome amount of working replication.
>> Confusingly, after doing this nextRid is still 1000 on both machines.
>
> This could be because you are looking at the wrong attribute in the
> wrong place.
> Try looking at the object 'CN=RID Set,CN=ALASKA,OU=Domain
> Controllers,DC=CHESTER-DC,DC=EXAMPLE,DC=COM' and the attribute
> 'rIDNextRID' it contains.
Interesting.
If, on Alaska, I do: ldbedit -H ldap://localhost -U ash
> # record 122
> dn: CN=RID Set,CN=ALASKA,OU=Domain
Controllers,DC=chester-dc,DC=example,DC=com
> objectClass: top
> object...
2016 May 16
3
Duplicate ObjectSid values
...le=Storekeeper --department=Repairs
> --mail-address=test.user at example.com --telephone-number=01244123456
> --gid-number=513
> > ERROR(ldb): Failed to add user 'test.user': -
> ../ldb_tdb/ldb_index.c:1216: Failed to re-index objectSid in CN=test
> user,CN=Users,DC=chester-dc,DC=example,DC=com -
> ../ldb_tdb/ldb_index.c:1148: unique index violation on objectSid in
> CN=test user,CN=Users,DC=chester-dc,DC=example,DC=com
G'Day,
This is a serious situation. What it means is that the nextRid value for that DC points at a user account that already exists, s...
2016 May 13
1
Fwd: Re: Invalid data for index DN=@INDEX:OBJECTCLASS:DNSNODE
...8)
x86_64 GNU/Linux
> Have you tried running 'samba-tool dbcheck' ??
0 root at empire:/etc/apt[0] samba-tool dbcheck
Checking 723 objects
Checked 723 objects (0 errors)
We have the same inability to add records.
We have the same error running: /usr/bin/samba-tool drs replicate
empire.chester-dc.example.com alaska.chester-dc.example.com
DC=DomainDnsZones,DC=chester-dc,DC=example,DC=com --local
Thanks, but it doesn't seem like the upgrade has helped.
2015 Jul 01
3
Computer can't access Sysvol
On 01/07/15 13:36, John Cobley wrote:
> Ok, I've worked out the caching was due to setting up administratively
> assigned offline folders.
>
> However I think I was getting a little mixed up with my servers. The
> error log was from a server that still had the share enabled. I've now
> removed the share from the config and restarted the Samba server.
> Despite
2016 Sep 12
3
Phantom DNS records visible with dig, but not samba-tool dns
On 09/09/16 16:35, lingpanda101--- via samba wrote:
> On 9/9/2016 10:59 AM, ash-samba--- via samba wrote:
>> We appear to have some phantom DNS records on both our domain
>> controllers.
>> [...]
>> # dig _ldap._tcp.dc._msdcs.chester-dc.example.com srv @10.4.4.155
>> [...]
>>
>
> For me I had to use ADSI edit to remove the entries.
>
I've managed to locate the entries using ADSI edit ( for any future
archive readers, open ADSI edit, and then connect using
"DC=ForestDCZones,dc=chester-dc,dc=example,...
2016 May 14
0
Invalid data for index DN=@INDEX:OBJECTCLASS:DNSNODE
...l
> security authority database contains an internal inconsistency".
> Adding
> a record on the command line shows:
> This pointed us at the DEELR013 record, so, I tried:
>
> > 0 root at empire:~[0] ldbdel -H
> /var/lib/samba/private/sam.ldb.d/DC%3DDOMAINDNSZONES,DC%3DCHESTER
> -DC,DC%3DEXAMPLE,DC%3DCOM.ldb
> DC=DEELR013,DC=chester
> -dc.example.com,CN=MicrosoftDNS,DC=DomainDnsZones,DC=chester
> -dc,DC=example,DC=com
> > Invalid data for index DN=@INDEX:OBJECTCLASS:DNSNODE
> >
> > delete of
> 'DC=DEELR013,DC=chester
> -dc.exampl...
2015 Jul 02
0
Computer can't access Sysvol
...b.conf referring to 'usershares' ?
>>>>
>>>> Rowland
>>>>
>>>
>>
>
> Can we see your smb.conf files ?
>
> Rowland
>
smb.conf
> ## Global parameters
> [global]
> netbios name = KINGDOM
> workgroup = CHESTER-DC
> realm = CHESTER-DC.COMTEK.CO.UK
> #Note that setting non-int log levels crashes the replication
> cron script!
> # log level = 10 acls:9
> # log level = 1 auth:3 passdb:5 sam:3 smb:3 lanman:3 acls:3
> locking:3 registry:3
> # log level =...
2010 Apr 17
12
Does Access 2003 work on Wine?
Hi All,
I am trying to convert a customer over to Linux workstation,
instead of upgrading to Windows 7.
One last program to go. I can not get Access 2003 to work
with CentOS 5.4's Wine 1.0.1. I am set to upgrade his test
workstation to Fedora 12 and the latest Wine in a month
or so. (Access 2003 crashed when you try to open a database.)
Does anyone know if Access 2003 works in the latest