Univention Bugzilla – Bug 48826
DRS replication doesn't work directly after joining a Samba 4.10 Backup
Last modified: 2019-03-12 13:41:07 CET
Looks like the DRS replication doesn't work directly after joining a Samba 4.10 Backup/Slave. showrepl shows no output (data) connections and a newly created user (via udm) doesn't get replicated via Samba/AD DRS. After /etc/init.d/samba restart on the master, the replication starts to work. That's a bit like Bug #35560, but worse, because it already happes with just two DCs. Maybe something like Bug #47441 reappeared? Unlikely.
Hmm, after I joined an additional slave and installed samba via "univention-app install samba4" it worked directly on that new slave. I'll check again.
Seems to be an effect of the new kcc replication topology.
The join.log output of a single DC Backup joining into a single DC Master shows the long delay until the initial DRS replication gets going: Configure 98univention-samba4-dns.inst Wed Feb 27 02:29:35 CET 2019 2019-02-27 02:29:35.363449729+01:00 (in joinscript_init) Setting dns/backend File: /etc/systemd/system/bind9.service.d/10-configure-backend.conf Restarting bind9 (via systemctl): bind9.service. Wait for bind9: done Waiting for RID Pool replication: done. Object created: uid=dns-backup41,cn=users,dc=ar440pt1,dc=qa looking for spn account "dns-backup41" in local samba looking for spn account "dns-backup41" in local samba looking for spn account "dns-backup41" in local samba looking for spn account "dns-backup41" in local samba looking for spn account "dns-backup41" in local samba looking for spn account "dns-backup41" in local samba looking for spn account "dns-backup41" in local samba looking for spn account "dns-backup41" in local samba looking for spn account "dns-backup41" in local samba looking for spn account "dns-backup41" in local samba looking for spn account "dns-backup41" in local samba looking for spn account "dns-backup41" in local samba looking for spn account "dns-backup41" in local samba looking for spn account "dns-backup41" in local samba looking for spn account "dns-backup41" in local samba looking for spn account "dns-backup41" in local samba looking for spn account "dns-backup41" in local samba looking for spn account "dns-backup41" in local samba looking for spn account "dns-backup41" in local samba looking for spn account "dns-backup41" in local samba looking for spn account "dns-backup41" in local samba looking for spn account "dns-backup41" in local samba looking for spn account "dns-backup41" in local samba looking for spn account "dns-backup41" in local samba looking for spn account "dns-backup41" in local samba looking for spn account "dns-backup41" in local samba looking for spn account "dns-backup41" in local samba Modified 1 records successfully Added 1 records successfully
04f56b1201 | Revert Activate new KCC for new installations, keep old on upgrades ab3bb02879 | Revert Updated UCR variable description for samba4/kccsrv/samba_kcc 817848327e | debian/changelog e3a367e3b3 | Remove reverted bug from UCS 4.4 changelog Package: univention-samba4 Version: 8.0.0-15A~4.4.0.201903051348 Branch: ucs_4.4-0
OK - wiki OK - univention-samba4 default for kcc is False testparm -s -v | grep kcc Load smb config files from /etc/samba/smb.conf Loaded services file OK. 'winbind separator = +' might cause problems with group membership. Server role: ROLE_ACTIVE_DIRECTORY_DC samba kcc command = /usr/sbin/samba_kcc server services = s3fs, rpc, wrepl, ldap, cldap, kdc, drepl, winbindd, ntp_signd, kcc, dnsupdate kccsrv:samba_kcc = False
There is no changelog entry in changelog-4.4-0.xml.
Interim Bug, reverting Bug #48085.
UCS 4.4 has been released: https://docs.software-univention.de/release-notes-4.4-0-en.html https://docs.software-univention.de/release-notes-4.4-0-de.html If this error occurs again, please use "Clone This Bug".