Environment: Samba serving as IPA domain controller, providing forest trust to Active Directory is having issues. Child winbind during startup tries to figure out the DC name. It is using function dcip_check_name() that either uses CLDAP or NETBIOS to resolve the IP to hostname. However if SERVER ROLE = IPA DOMAIN CONTROLLER, only NETBIOS is tried. It looks that Windows server no longer provide netbios and the winbind child for the domain is not able to start at all. smb.conf has: security = USER server role = IPA domain controller Fix will follow.
This bug was referenced in samba master: 4921c3304e5e0480e5bb80a757b3f04b3b92c3b1 d88268102ade07fab345e04109818d97d8843a14 1dbafcc4e4ff8f39af5ca737b30e9821413dd1f2 a4dff82e45308db3ccabac2a55c03d52f04d7b4d
Created attachment 18682 [details] patch for 4.22 and 4.21
Comment on attachment 18682 [details] patch for 4.22 and 4.21 LGTM
Jule, please apply the patches to the corresponding branches. Thanks!
Pushed to autobuild-v4-{22,21}-test.
This bug was referenced in samba v4-21-test: a8e2ea60831fca3e5dc6efea3520cea60bffdf9a 1c6b6494735920ec01d1b252a3c8b9b7835c0c80 7bf2051aadd45562d5e99b10b9eced96cb9592e3 2a52c97607031dab1dd9a14a9a057db99ea582b8
This bug was referenced in samba v4-22-test: fe8eafc289dfbb6f2b6c706f2a8a68186807d4f8 d14fa6eb96a9f296d386ff4864e4f016440f2ac8 00adb3104e745babb2c330fa9c9e324805395edb 3364797676624aa9367076a69b2daf73870429ba
Closing out bug report. Thanks!
This bug was referenced in samba v4-22-stable (Release samba-4.22.4): fe8eafc289dfbb6f2b6c706f2a8a68186807d4f8 d14fa6eb96a9f296d386ff4864e4f016440f2ac8 00adb3104e745babb2c330fa9c9e324805395edb 3364797676624aa9367076a69b2daf73870429ba
This bug was referenced in samba v4-21-stable (Release samba-4.21.8): a8e2ea60831fca3e5dc6efea3520cea60bffdf9a 1c6b6494735920ec01d1b252a3c8b9b7835c0c80 7bf2051aadd45562d5e99b10b9eced96cb9592e3 2a52c97607031dab1dd9a14a9a057db99ea582b8