Displaying 20 results from an estimated 1000 matches similar to: "Errors transferring forestdns and domaindns FSMO roles"
2017 Dec 13
2
DNS replication only working one way
I ran thru the wikipage you linked to, and the results were as they should
be
# record 1
dn: CN=NTDS
Settings,CN=DC1,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=tcsbasys,DC=com
objectGUID: 0d5ebcac-88d7-44fb-a830-ec3eacb6757f
# record 2
dn: CN=NTDS
Settings,CN=DC2,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=tcsbasys,DC=com
objectGUID:
2017 Dec 12
2
DNS replication only working one way
I'm sorry Rowland, I meant to mention in my initial email that I am running
4.7.3.
and other replication (like AD object replication) is working in both
directions. it is just DNS replication that is only working one way.
On Tue, Dec 12, 2017 at 2:15 PM, Rowland Penny via samba <
samba at lists.samba.org> wrote:
> On Tue, 12 Dec 2017 14:00:32 -0600
> Taylor Hammerling via samba
2017 Dec 12
0
Errors transferring forestdns and domaindns FSMO roles
On Tue, 12 Dec 2017 11:56:08 -0600
Taylor Hammerling via samba <samba at lists.samba.org> wrote:
> I am attempting to transfer the all FSMO roles from an old DC to our
> new DC. Both DCs are running Samba 4.7.3. I have transferred the
> Schma, Infrastructure, RID, PDC and Naming roles without issue.
>
> unfortunately, the forestdns and domaindns roles are giving me grief.
2017 Dec 13
1
Errors transferring forestdns and domaindns FSMO roles
Hai, can you post the exact error again, or is is really exact like the January link.
drs_utils.py on debian should be these.
/usr/lib/python2.7/dist-packages/samba/drs_utils.py
/usr/lib/python2.7/dist-packages/samba/drs_utils.pyc
And now i see whats the differrence here.
Rowland showd in january.
/usr/local/samba/lib/python2.7/site-packages/samba/drs_utils.py
/usr/lib/
2017 Jan 27
3
LDAP_INSUFFICIENT_ACCESS_RIGHTS error stops FSMO transfer
Attempting to move FSMO roles from one SerNET Samba 4.5.4 DC to
another, all roles transfered except the DNS related ones - those fail
with an LDAP_INSUFFICIENT_ACCESS_RIGHTS
[root at larkin28 ~]# samba-tool fsmo show
SchemaMasterRole owner: CN=NTDS
Settings,CN=LARKIN28,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=micore,DC=us
InfrastructureMasterRole owner: CN=NTDS
2017 Dec 12
2
DNS replication only working one way
I'm hoping this is the last issue I run into with bringing this new DC
online.
DNS replication is currently only working in one direction, from my old DC
to my new DC. Items added or changed in the RSAT of my new DC don't ever
make it over to the old DC.
I have turned up samba logging on each side to 3, and you can see the logs
below from the time I created a record on the new DC
2019 Mar 25
3
FSMO transfer problems
Hello all,
Have joined a new DC to an existing active directory consisting of a
sole DC. So, we now have two domain controllers, the original being
ad.DOMAIN.intranet (192.168.0.17), and the new one being
DOMAIN-ad.DOMAIN.intranet (192.168.0.11). I want the new DC to become
the FSMO role owner, so I followed the instructions here -
2017 Oct 05
2
Magically disappearing errors during FSMO transfer
Recently tried transferring roles from Samba 4.3.11 to Samba 4.7.0. Ultimately,
both dcs agreed that the 4.7.0 dc (dc3) had all the roles and replication and
the databases were in good shape. However, during the process, I got a lot of
errors that seemed to magically disappear.
Should I be worried?
root at dc3:~# samba-tool fsmo show SchemaMasterRole owner: CN=NTDS
2016 Jul 07
4
FSMO Transfer fail
Fail! :-(
root at gteste2:~# samba-tool fsmo transfer --role=all -UAdministrador
FSMO transfer of 'rid' role successful
FSMO transfer of 'pdc' role successful
FSMO transfer of 'naming' role successful
FSMO transfer of 'infrastructure' role successful
FSMO transfer of 'schema' role successful
ERROR(<type 'exceptions.UnboundLocalError'>):
2017 Aug 04
2
Error while transferring fsmo-roles
Hello,
I transfered all fsmo-roles from a DC (4.3.11-SerNet, SLES 11 SP3) to another DC (4.6.6-SerNet, SLES 12 SP2).
I had to try a couple of times because of an error "Failed FSMO transfer: NT_STATUS_IO_TIMEOUT"
But then following error happened:
samba-tool fsmo transfer --role=all
This DC already has the 'rid' FSMO role
This DC already has the 'pdc' FSMO role
2019 Aug 04
3
Problems Transferring FSMO Roles
Hi,
Hi,
I'm having trouble transferring FSMO roles "DOMAINDNS" and FORESTDNS with
below showing:
samba-tool fsmo transfer --role=domaindns
ERROR: Failed to delete role 'domaindns': LDAP error 50
LDAP_INSUFFICIENT_ACCESS_RIGHTS - <00002098: SecErr: DSID-031523E0,
problem 4003 (INSUFF_ACCESS_RIGHTS), data 0
> <>
root at samba4-dc:~# samba-tool fsmo transfer
2023 Jan 12
1
problems with sysvol after fsmo transfer
Am 12.01.23 um 12:25 schrieb Rowland Penny via samba:
>
> On 12/01/2023 10:53, Thorsten Marquardt via samba wrote:
>> Thank you so far. But unfortunately I could not fix the problems. So I
>> decided to start over again at a situation where all the fsmo roles
>> resides on the old controller.
>>
>> Here is a transcript of what I did and the errors reported:
2016 Sep 30
2
?==?utf-8?q? uncaught exception on samba-tool fsmo transfer
sorry, samba version 4.5.0
Am Freitag, 30. September 2016 10:31 CEST, Rowland Penny via samba <samba at lists.samba.org> schrieb:
> On Fri, 30 Sep 2016 10:20:27 +0200
> Heinz Hölzl via samba <samba at lists.samba.org> wrote:
>
> > Hi,
> >
> > i transfered the roles from DC2 to DC1:
> >
> > root at dc1:~# samba-tool fsmo transfer
2023 Jan 12
1
problems with sysvol after fsmo transfer
On 12/01/2023 10:53, Thorsten Marquardt via samba wrote:
> Thank you so far. But unfortunately I could not fix the problems. So I
> decided to start over again at a situation where all the fsmo roles
> resides on the old controller.
>
> Here is a transcript of what I did and the errors reported:
>
> The inititial position
>
> srv-kb-dc1:~ # samba-tool fsmo show
>
2017 Dec 15
3
UID/GID -> SID -> NAME mapping across multiple DCs
Danke!
On Fri, Dec 15, 2017 at 1:03 PM, Rowland Penny via samba <
samba at lists.samba.org> wrote:
> On Fri, 15 Dec 2017 11:56:25 -0600
> Taylor Hammerling <thammerling at tcsbasys.com> wrote:
>
> > Interesting... How do I go about getting them/keeping them in sync?
> >
>
> see here:
>
> https://wiki.samba.org/index.php/Joining_a_Samba_DC_to_an_
>
2019 Jul 19
1
Failed Xfer of domain and forest fsmo
On 07/19/2019 03:08 PM, Rowland penny via samba wrote:
> On 19/07/2019 20:41, Robert A Wooldridge via samba wrote:
>> I have transferred all fsmo's except domain and forest.? When I
>> attempt either one of these I get this error:
>>
>> samba-tool fsmo transfer --role=forestdns
>> ERROR: Failed to delete role 'forestdns': LDAP error 50
>>
2017 Dec 12
2
Can't access DNS from RSAT
The user is a member of "Domain Admins" so they should be able to access
the DNS (as is evident by the fact that they can access the DNS thru RSAT
on the initial DC).
But just to be thorough I have added "Domain Admins" to the group
"DnsAdmins" and tested again, still get the "access denied" error from
within windows.
On Tue, Dec 12, 2017 at 11:01 AM,
2017 Dec 12
2
Can't access DNS from RSAT
I found this page https://bugzilla.samba.org/show_bug.cgi?id=12807 which
seemed to have someone experiencing the same issue I am.
I tried adding "allow dcerpc auth level connect:dnsserver = yes" to my
smb.conf, rebooted the server, but still I get the an access denied message
in windows.
However, what is logged in the log.samba files has changed since adding
this option to my smb.conf.
2016 Jul 07
2
FSMO Transfer fail
Hi for All!
I am using a Windows Server 2008R2 as primary DC and a Ubuntu Server 16.04
as secundary DC with Samba 4.3.9 (from repository/apt-get).
During a migration test of FSMO roles I received an error from Samba:
root at gteste2:~# samba-tool fsmo transfer --role=all
ERROR: Failed to delete role 'domaindns': LDAP error 50
LDAP_INSUFFICIENT_ACCESS_RIGHTS - <00002098: SecErr:
2017 Dec 12
2
Can't access DNS from RSAT
Good morning all!
I have two DCs, both running Samba 4.7.3. I have just joined the second DC
to the domain. The second DC is replicating AD objects perfectly, I
verified this by running "samba-tool drs showrepl" as well as using the
ADUC RSAT snapin and adding a user to one DC, then switching the DC that
ADUC connects to and verifying that the user was properly replicated.
The DNS