Displaying 20 results from an estimated 4000 matches similar to: "Need advice on upgrading from 4.3.11 to 4.8.3"
2018 Jul 16
2
Need advice on upgrading from 4.3.11 to 4.8.3
> Hi all,
>
> We have a Samba AD DC service running on Ubuntu 16.0.4 with Samba
> 4.3.11. We are planning to upgrade it to a recent version, probably
> 4.8.3.
>
> I think that I have two options:
>
> a) Package upgrade via 3rd party repositories (Louis Van Belle's repo)
> by following wiki.
>
> b) A fresh install of 4.8.3 on another VM then join it to
2018 Jul 16
0
Need advice on upgrading from 4.3.11 to 4.8.3
On Mon, 16 Jul 2018 08:03:22 +0000 (UTC)
Taner Tas <taner76 at gmail.com> wrote:
> > Hi all,
> >
> > We have a Samba AD DC service running on Ubuntu 16.0.4 with Samba
> > 4.3.11. We are planning to upgrade it to a recent version, probably
> > 4.8.3.
> >
> > I think that I have two options:
> >
> > a) Package upgrade via 3rd party
2018 Jul 24
2
Bad zone problem after join, seize, demote
I'm testing to a seamless upgrade from 4.3.11 to 4.8.3 on my test setup.
Database migrating from 4.3.11 was successful. After "samba-tool
dbdcheck --cross-ncs --fix --yes", 4.8.3 was launching ok except
replication (4.3.11 to 4.8.3 : WERR_BADFILE). After demoting older ones
and seize (transfer doesn't work) all roles to 4.8.3, dns (bind_dlz)
service won't start anymore
2018 Oct 31
2
WERR_DS_DOMAIN_RENAME_IN_PROGRESS - Join Failed
>
> OK, get the 'Windows sysadmin' to go to the 2012 DC and run
> 'rendom /end' on it, see if this fixes your problem.
>
> Rowland
Thanks Rowland, that did the fix the problem related with
WERR_DS_DOMAIN_RENAME_IN_PROGRESS error. But the problem evolved into a
new one: "WERR_DS_DIFFERENT_REPL_EPOCHS"
...
Starting replication
Join failed - cleaning up
2018 Oct 31
2
WERR_DS_DOMAIN_RENAME_IN_PROGRESS - Join Failed
> > I'm trying to join a Samba 4.9.1 Debian Strech installation
>
> Please define 'installation', do you mean that you have installed the
> required Samba packages and have not provisioned or something else ?
Yes, I just installed required packages prior to join a DC. Just like
preparing a join to any other Samba DC. Since there's already two
Windows DC's
2018 Oct 31
2
WERR_DS_DOMAIN_RENAME_IN_PROGRESS - Join Failed
Hi,
I'm trying to join a Samba 4.9.1 Debian Strech installation (also tested
with 4.8.6) to a Windows 2012 R2 Server which runs in 2008-R2 functional
level. This is a production system and it is going to be first Samba DC
in domain. There is currently two Windows DC's in domain. All FSMO
roles hold by DC1.
It seems there's something going on with Widows DC's bu I'm not able
2018 Jul 24
1
Tracing the consequences of overlapped id mappings
Hi,
I'm trying to find out consequences of overlapped idmap settings that
used with 4.3.11 DC's. I'm about to upgrade these DC's to 4.8 version.
Before deploying new DCs, I want to make sure that any side effects
regarding id map settings will be left behind.
# ldbsearch -H /var/lib/samba/private/idmap.ldb | grep xidNumber \
| cut -d' ' -f2 | sort
0
100
3000000
2018 Aug 04
2
Bind 9.12.x support status
On Fri, 03 Aug 2018 12:28:38 +1200
Andrew Bartlett <abartlet at samba.org> wrote:
> On Thu, 2018-08-02 at 22:37 +0300, Taner Tas wrote:
> > > Nobody has looked into it yet. Likely just an extra build rule
> > > required, I would need to see the 9.11 and 9.12 DLZ header files to
> > > check.
> > >
> > > Aaron Haslett (CC'ed) may be able
2018 Jul 16
0
Need advice on upgrading from 4.3.11 to 4.8.3
On 15/07/2018 21:27, Taner Tas via samba wrote:
> We have a Samba AD DC service running on Ubuntu 16.0.4 with Samba 4.3.11.
> We are planning to upgrade it to a recent version, probably 4.8.3.
Yes, Penny is spot on.
I have recently performed a similar task in a production environment.
1. Test the whole procedure at home with VMs, where I took a copy of the current VM, then created a new
2018 Dec 26
3
Generating keytab on a read-only file system
>
> dedicated keytab file = /tmp/krb5.keytab
>
> For which programs do you use the keytab?
I already tried that. But still tries to write at /etc. It seems this
parameter used when you have a keytab already.
__
Taner Tas
2018 Jul 15
0
Need advice on upgrading from 4.3.11 to 4.8.3
On Sun, 15 Jul 2018 23:27:13 +0300
Taner Tas via samba <samba at lists.samba.org> wrote:
> Hi all,
>
> We have a Samba AD DC service running on Ubuntu 16.0.4 with Samba
> 4.3.11. We are planning to upgrade it to a recent version, probably
> 4.8.3.
>
> I think that I have two options:
>
> a) Package upgrade via 3rd party repositories (Louis Van Belle's repo)
2018 Aug 31
3
Replicate with --full-sync error
Hi,
I tried to replicate two DC's (on test setup) with "--full-sync" option
but fails with error message below. I tried "--full-sync" because I
wonder if it has any effect on some diverged entries reported
by "samba-tool ldapcmp".
# samba-tool drs replicate dc1 dc2 --full-sync DC=samdom,DC=com
ERROR(<class 'samba.drs_utils.drsException'>): DRS
2018 Aug 02
3
Bind 9.12.x support status
> Nobody has looked into it yet. Likely just an extra build rule
> required, I would need to see the 9.11 and 9.12 DLZ header files to
> check.
>
> Aaron Haslett (CC'ed) may be able to help once he fights past the other
> BIND9 issues he is looking at.
>
> Andrew Bartlett
Thanks for response. I actually looked it myself. Since there is no
DLZ ABI changes since
2018 Dec 27
2
Generating keytab on a read-only file system
> First, I suggest read :
> https://wiki.samba.org/index.php/Keytab_Extraction
I did.
> Second, it his for
> a member or AD-DC? Thats because of the location of the keytab and
> the ad-dc creates its own keytab file. Thirth, are any other services
> going to use it? Last, root must be able to write the keytab file.
>
They're members. The intent is to auto join clients
2018 Sep 05
2
Bind 9.12.x support status
Hi,
I recently noticed that when doing "samba_dns --all-names --verbose"
against Bind-9.12, I can't update dns records. I'm getting these error
messages for each record to update:
.
.
.
update failed: REFUSED
Failed nsupdate: 2
update(nsupdate): SRV _ldap._tcp.Default-First-Site-Name._sites.ForestDnsZones.samdom.com alpine.samdom.com 389
Calling nsupdate for SRV
2018 Dec 27
4
Generating keytab on a read-only file system
Hai Taner,
> -----Oorspronkelijk bericht-----
> Van: Taner Tas [mailto:taner76 at gmail.com]
> Verzonden: donderdag 27 december 2018 12:30
> Aan: L.P.H. van Belle via samba
> CC: L.P.H. van Belle
> Onderwerp: Re: [Samba] Generating keytab on a read-only file system
>
>
>
>
> > First, I suggest read :
> >
2018 Oct 01
2
Import OpenLDAP schema
Hi,
I'm trying to figure out to import the schema below to Samba LDAP. I
tried to modify class names, DN etc but it didn't help.
I don't paste here because of some long lines.
Here is the link of ldif file:
https://raw.githubusercontent.com/Pardus-LiderAhenk/lider-ahenk-installer/master/src/conf/liderahenk.ldif
Thanks.
---
Taner Tas
2018 Dec 28
2
Generating keytab on a read-only file system
> Why do you feel you need sssd ?
> Winbind will mostly do everything on a Unix domain member that sssd
> does and what it doesn't do, there are other ways of doing them.
Lets say "easiness". I actually stumbled that how it is easy to migrate
Linux clients into AD structure with sssd comparing with my other
attempts.
Regards,
__
Taner Tas
2019 Feb 12
1
Dynamic update dns records with dhcp
Hi,
I need some info regarding what conditions make dhcp dynamic dns updates
essential? Has Samba a limitation with accepting dns record update
requests from logged clients? The wiki page doesn't contain such
information except:
"You must stop your windows clients from trying to update their own
records, as this will fail and fill your logs with errors."
Does this mean it is
2018 Dec 26
2
Generating keytab on a read-only file system
Hi,
I'm trying to implement an auto-join procedure for diskless (nfs root)
thin clients. I'm able to issue "net ads join" command
but /etc/krb5.keytab can't be created due to the read-only /etc
directory. I'm using read-write tmpfs file system for other directories
such as /tmp, /run, /var/log etc. but /etc supposed to be read-only.
I have to tell "net ads