Bug 55891 - gc._msdcs record wrong on school servers
gc._msdcs record wrong on school servers
Status: NEW
Product: UCS@school
Classification: Unclassified
Component: Samba 4 - Slave PDC
UCS@school 5.0
Other Linux
: P5 normal (vote)
: ---
Assigned To: Samba maintainers
:
Depends on:
Blocks:
  Show dependency treegraph
 
Reported: 2023-03-20 09:29 CET by Dirk Ahrnke
Modified: 2023-03-20 09:31 CET (History)
0 users

See Also:
What kind of report is it?: Bug Report
What type of bug is this?: 3: Simply Wrong: The implementation doesn't match the docu
Who will be affected by this bug?: 3: Will affect average number of installed domains
How will those affected feel about the bug?: 2: A Pain – users won’t like this once they notice it
User Pain: 0.103
Enterprise Customer affected?:
School Customer affected?: Yes
ISV affected?:
Waiting Support:
Flags outvoted (downgraded) after PO Review:
Ticket number:
Bug group (optional):
Max CVSS v3 score:


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Dirk Ahrnke univentionstaff 2023-03-20 09:29:59 CET
On a school-replica, as well as on administrative replicas, the host-record gc._msdcs.$domain contains also IP-adresses of central systems with Samba4 installed.

root@ucs-edu-a:~# dpkg -l | grep school-replica
ii  ucs-school-replica                                  13.0.15A~5.0.0.202205190959                      all          UCS@school meta package for UCS Replica Directory Nodes
root@ucs-edu-a:~# univention-app info
UCS: 5.0-3 errata601
Installed: cups=2.2.1 dhcp-server=12.0 samba4=4.16 squid=3.5 ucsschool=5.0 v3 4.4/ucsschool-veyon-proxy=4.7.4.14-0
Upgradable: 
root@ucs-edu-a:~# /usr/share/univention-samba4/scripts/check_essential_samba4_dns_records.sh | head  -2
gc._msdcs.training.ucs has address 10.0.10.13
gc._msdcs.training.ucs has address 10.0.0.13
root@ucs-edu-a:~# host 10.0.10.13
13.10.0.10.in-addr.arpa domain name pointer ucs-edu-a.training.ucs.
root@ucs-edu-a:~# host 10.0.0.13
13.0.0.10.in-addr.arpa domain name pointer dn1.training.ucs.

This behaviour has been confirmed in customer environments. 

It is not yet proven if this leads into problems, however the fact was noticed during investigations of problems related to roaming profiles reported by a customer. In this case Windows-Computers that have been freshly joined into a School-AD have chosen to store profiles on central systems.