Univention Bugzilla – Bug 35000
Only move /var/lib/samba/private for re-join, not /var/lib/samba
Last modified: 2014-07-08 14:34:31 CEST
For a samba4 re-join we currently move the /var/lib/samba directory out of the way. This has several drawbacks, amongst them these three:
* If the re-join is performed via UMC, it has been observed that the umask (0077 ?) causes problems for Authenticated Users to access the sysvol folder below.
* The server side printer drivers are not found any longer (see Bug 34396)
* The ntp_signed directory is not accessible any longer for the group "ntp", causing problems with the ntp server (at least for windows clients).
One solution for these three issues would be to only move the "/var/lib/samba/private" directory out of the way and leave the remaining files untouched.
*** Bug 34396 has been marked as a duplicate of this bug. ***
I'm not sure if this change is the reason but after rejoining the DC backup I get:
root@backup212:~# samba-tool user add test-b Univention.99
ERROR(ldb): Failed to add user 'test-b': - ../ldb_tdb/ldb_index.c:1216: Failed to re-index objectSid in CN=test-b,CN=Users,DC=deadlock21,DC=local - ../ldb_tdb/ldb_index.c:1148: unique index violation on objectSid in CN=test-b,CN=Users,DC=deadlock21,DC=local
The environment is up and running:
10.201.21.1 (master) + 184.108.40.206 (backup)
Comment 3: That's Bug #34754
OK, works as expected.
*** Bug 35001 has been marked as a duplicate of this bug. ***