We are investigating a move to Ubuntu when sysvol is working:
samba --version
Version 4.2.0pre1-GIT-7f36828
on Ubuntu 14.04
>
> Btw - what do you get with:
> samba-tool testparm -v --suppress-prompt | grep kccsrv:samba_kcc
> on your DCs?
>
> Cheers, Günter
>
On both DCs:
sudo samba-tool testparm -v --suppress-prompt | grep kccsrv:samba_kcc
kccsrv:samba_kcc = true
Hi
Question: If I create a user on DC1 it replicates. If I create a user on
DC2 it does not. Is the replication one way only with this version?
Thanks,
Steve
In the *release* versions the internal samba default is
kccsrv:samba_kcc = false
*but* in current git master this setting defaults to *true*!
The external python KCC "samba_kcc" is atm *not* fully implemented and to
my knowledge has never been really tested.
KCC related info. e.g.: http://technet.microsoft.com/en-us/library/cc961781.aspx
So i strongly recommend to add the following to the [global] section of smb.conf:
kccsrv:samba_kcc = false
to all your DCs which you built from git.
The current python samba_kcc is buggy, so it should not be used until it is fixed.
Btw - you can also force an initial replication between DCs in both directions with
samba-tool drs replicate ......
Once a first replication has been done successfully, it usually sticks.
Take care to use the right syntax, but there should already be samples on the net.
Cheers, Günter
>
> The current python samba_kcc is buggy, so it should not be used until it is fixed.
>
> Btw - you can also force an initial replication between DCs in both directions with
> samba-tool drs replicate ......
> Once a first replication has been done successfully, it usually sticks.
> Take care to use the right syntax, but there should already be samples on the net.
>
Hi Günter
We had to kick-start it like this:
samba-tool drs replicate palmera geranio dc=altea,dc=site
repeated for the remaining partitions:
Configuration
Schema
ForestDnsZones
DomainDnsZones
We did this on the DC we joined. Is this correct? Is this what you are
referring to? The replication now works both ways and has survived a
restart.
Cheers and thanks for your time,
Steve