Displaying 20 results from an estimated 6000 matches similar to: "Active directory and multiple forests"
2009 Mar 24
1
Inter-Asterisk Using SIP
Test
------Mensaje original------
De: tracinet
Remitente:asterisk-users-bounces at lists.digium.com
Para:Asterisk Users Mailing List - Non-Commercial Discussion
Responder a:Asterisk Users Mailing List - Non-Commercial Discussion
Asunto: Re: [asterisk-users] [Asterisk-Users] Inter-Asterisk Using SIP
Enviado: 6 Mar, 2009 5:55 PM
Basically, Server 1 is the main customer PBX where we have multiple
2024 Mar 31
1
Inconsistent SOA records from different Samba AD-DC DNS servers
Hi all,
I am experiencing strange behaviour regarding DNS resolution with my
samba-driven AD.
This is with Debian-packaged samba on raspberry Pi:
# samba -V
Version 4.19.5-Debian
# uname -a
Linux dc3.ad.mydomain.tld 6.1.0-rpi8-rpi-v8 #1 SMP PREEMPT Debian
1:6.1.73-1+rpt1 (2024-01-25) aarch64 GNU/Linux
I would expect that every DNS server of the domain would respond with
the same SOA record. But
2020 Feb 12
4
Failover DC did not work when Main DC failed
What do you see/get when you run:
dig NS $(hostname -d)
With 2 dc's you should see 2 records.
In the past this was a bug at samba joins so only 1 NS record existed.
Worth to have a look at.
And adding this to /etc/resolv.conf:
options timeout:2
options attempts:3
options rotate
Also might help.
Greetz,
Louis
> -----Oorspronkelijk bericht-----
> Van: samba
2016 Jan 06
2
Authentication to Secondary Domain Controller initially fails when PDC is offline
On 1/6/2016 10:56 AM, Ole Traupe wrote:
> Ok, I updated resolv.conf as you said. Then I restarted the network
> service on this member server and afterwords suspended the 1st DC.
> Now, kinit gives me again:
>
> "Cannot contact any KDC for realm 'BPN.TU-BERLIN.DE' while getting
> initial credentials"
>
> Ole
>
>
> Am 05.01.2016 um 13:41 schrieb
2019 May 22
2
dsdb_access Access check failed on CN=Configuration
----- On May 22, 2019, at 10:01 AM, samba samba at lists.samba.org wrote:
> Try again with :
>
> samba-tool ldapcmp dc5.$(hostname -d) dc3.$(hostname -d) DNSFOREST
> As in dc5.your.dns.domain.tld ...
>
> Whats the result.?
The failure is still present -- no change in the output of the command:
# samba-tool ldapcmp dc3.domain.local dc5.domain.local DNSFOREST
ERROR(ldb):
2019 May 22
2
dsdb_access Access check failed on CN=Configuration
All-
I've got 3 DCs (version 4.9.6-12) that, prior to today, were running without issue (as best I could tell).
Every night I run a few commands to monitor the status of the DCs/domain. I run:
* dbcheck --cross-ncs
* samba-tool drs kcc <other DCs>
* samba-tool ldapcmp <local DC> <other DCs> (domain|configuration|schema|dnsdomain|dnsforest)
* samba-tool drs showrepl
These
2016 Apr 12
3
wbinfo --dc-info finding only one of my dc's
Hi,
Playing around with winbind, i noticed the follewing option:
wbinfo --dc-info=DOMAIN
According the the manual:
--dc-info=domainname Find the currently known DCs
When I run it on a domain member server, it reports only one DC, instead
of the three I would expect.
I guess this means winbind doesn't know about the existance of two of
our three DCs...?
Does it return all DCs for
2007 Feb 06
1
SAMBA in separate Domains/Forests ...
Hello ..
Does anyone have a description or hints on how to get Samba to see users
from two separate Windows ADS Domains/Forests ?
Here is the Situation :
Windows (Server 2003 R2):
TEST.DOM and DEMO.DOM in separate 'Forests'
DEMO.DOM Win2003 ADS -> explicit incoming Trust from TEST.DOM
TEST.DOM Win2003 ADS -> explicit outgoing Trust to DEMO.DOM
( TEST.DOM Trusts
2014 Jan 16
0
Samba authentication across AD forests
Hello all,
I am currently trying to connect a Samba server (running on CentOS 6.5) to a Windows 2008R2 AD domain (domain A),
which itself has a two-way transitive forrest-trust to another Windows 2008R2 AD domain (domain B).
The Samba server is joined to domain A and should be able to authticate users in domain B.
Is this currently possible using some version of either Samba3 or Samba4 ?
If so,
2015 Nov 27
3
Authentication to Secondary Domain Controller initially fails when PDC is offline
On 11/26/2015 10:35 AM, Ole Traupe wrote:
>
>>> ANYWAYS, I would like to approach from a different direction:
>>>
>>> If my first DC is offline, a ping on any of my domain machines takes
>>> 5+ seconds to resolve. I figure that my logon problems reflect
>>> multiple such timeouts during the logon process accumulating to a
>>> total
2017 Jun 15
6
question on password server =
On Thu, 15 Jun 2017 10:14:45 +0200
mj via samba <samba at lists.samba.org> wrote:
> Nobody knows..?
>
> Or my question is unclear..?
>
OK, whilst it is recomended to use 'password server = *' you can use a
list of servers instead. I personally do not see the point of setting
it as you are proposing, surely it is just the same as using '*' ?
I am also
2016 Aug 17
4
samba ADDC dns setup? ( this is same for any MS server )
Hai eveyone.
I know about the dns "things" in the past. DNS Islanding problems etc.
This one is a bit hijacking the subject :
“Horrible BIND9_DLZ DNS breakage after DC replaced and samba-tool domain demote --remove-other-dead-server”
I would like to suggest a smale change in how we suggest to setup samba ADDC dns things,
and i do think this help in the setup of the AD
2020 Nov 16
6
changes on DC not replicated, while showrepl reports no issues
Hi all,
We are running a three DC samba AD, using 4.12.8 sernet packages. Very
stable for years.
Today at 12:30 my colleague moved two users from
* CN=Users,DC=samba,DC=company,DC=com
to
* OU=disabled,DC=samba,DC=company,DC=com
This change was done on the DC4 at 12:30 using LAM (ldap-account-manager
version 7.3)
Ever since that, my automated samba-tool ldapcmp scripts started
reporting
2020 Feb 27
4
New PTR records not visible
Ok, new test.
Besides that i dont like the python errors shown, this still looks good.
So i dont know.. See below, i can not make it error.
for x in 0 1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 ; do samba-tool dns add dc1.internal.dom.tld $x.249.10.in-addr.arpa 158 PTR host-test.extrazone.dom.tld ; done
Record added successfully
Record added successfully
Record added successfully
Record added
2016 Aug 15
3
Horrible BIND9_DLZ DNS breakage after DC replaced and samba-tool domain demote --remove-other-dead-server
On Mon, 15 Aug 2016 16:02:38 +0100
Rowland Penny via samba <samba at lists.samba.org> wrote:
>
> OK, this has nothing to do with the classicupgrade, I have setup a
> couple of VMs and provisioned a test DC in one and joined another DC
> in the other.
>
> I am now at the point the OP is at, samba_dnsupdate cannot add the
> required records, all I get in log.samba is
2018 Apr 10
3
Order of Dcs resolv.conf
Mandi! Rowland Penny via samba
In chel di` si favelave...
> Try reading this:
> http://www.itgeared.com/articles/1046-dns-client-settings-for-active/
I try to summarize.
''To be a DC'', servers have to add/update some DNS record.
If you have a single DC, there's no choice. ;-)
If you have more than a DC, you have to pay attention to have as DNS
not the DC itself
2018 Oct 24
2
Joining to a Windows 2012 R2 DC
Hi,
I'm trying to join a Samba installation (4.8.6, Debian Strech) to
existing 2012-R2 DC. Fails with the message below:
# samba-tool domain join mydomain.tld DC -U"MYDOMAIN.TLD\Administrator"
--dns-backend=BIND9_DLZ --server=10.22.1.91
Password for [MYDOMAIN.TLD\Administrator]:
workgroup is MYDOMAIN
realm is mydomain.tld
Adding CN=DC3,OU=Domain Controllers,DC=mydomain,DC=tld
Join
2016 Sep 17
2
Exporting keytab for SPN failure
Am 17.09.2016 um 17:07 schrieb Achim Gottinger via samba:
>
>
> Am 17.09.2016 um 06:14 schrieb Achim Gottinger via samba:
>>
>>
>> Am 17.09.2016 um 04:53 schrieb Achim Gottinger via samba:
>>>
>>>
>>> Am 17.09.2016 um 03:24 schrieb r moulton via samba:
>>>> On Fri, Sep 16, 2016 at 6:08 PM, Achim Gottinger via samba
>>>>
2020 Nov 17
2
changes on DC not replicated, while showrepl reports no issues
Hi,
Again more data: The command
samba-tool visualize reps
seems to agree with the observed lack of replication from DC4 to DC3 & DC2:
> RepsTo objects for DOMAIN
> destination
>
2016 Sep 19
2
Exporting keytab for SPN failure
Achim Gottinger via samba wrote on 9/19/16 9:39 AM:
>
>
> Am 17.09.2016 um 19:35 schrieb Achim Gottinger via samba:
>>
>>
>> Am 17.09.2016 um 17:07 schrieb Achim Gottinger via samba:
>>>
>>>
>>> Am 17.09.2016 um 06:14 schrieb Achim Gottinger via samba:
>>>>
>>>>
>>>> Am 17.09.2016 um 04:53 schrieb Achim