Bug 51767 - AD Member Mode: dhcp ntp server settings overwrite local ntp server
AD Member Mode: dhcp ntp server settings overwrite local ntp server
Status: NEW
Product: UCS
Classification: Unclassified
Component: AD Connector
UCS 4.4
Other Linux
: P5 normal (vote)
: ---
Assigned To: Samba maintainers
Samba maintainers
:
Depends on:
Blocks:
  Show dependency treegraph
 
Reported: 2020-08-04 11:29 CEST by Felix Botner
Modified: 2020-08-05 00:14 CEST (History)
1 user (show)

See Also:
What kind of report is it?: Bug Report
What type of bug is this?: 1: Cosmetic issue or missing function but workaround exists
Who will be affected by this bug?: 1: Will affect a very few installed domains
How will those affected feel about the bug?: 2: A Pain – users won’t like this once they notice it
User Pain: 0.011
Enterprise Customer affected?:
School Customer affected?:
ISV affected?:
Waiting Support:
Flags outvoted (downgraded) after PO Review:
Ticket number:
Bug group (optional):
Max CVSS v3 score:


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Felix Botner univentionstaff 2020-08-04 11:29:41 CEST
Seen in our test environment:

During the member mode setup we
 * set the date/timezone from the windows server on ucs
 * set the windows server as ntp server

But in our test env ucs is configured to use dhcp and our dns4kvm service also provides ntp server settings. These settings are silently applied to the ucs and overwrite the local ntp server settings (/etc/dhcp/dhclient-exit-hooks.d/ntp, /run/ntp.conf.dhcp).

This caused a mismatch between the ucs and windows time in our tests and broke kerberos.

Maybe we should make the "request" /etc/dhcp/dhclient.conf configurable to remove "ntp-servers", but i'm not sure.

We should also check the ntp settings in our windows template.

For now i disabled the ntp dhcp stuff in the test ucs/test/scenarios/appliance-testing/ad-member.cfg.