Bug 9089 - Samba 4.0 as an AD DC does not record password replications made to an RODC
Samba 4.0 as an AD DC does not record password replications made to an RODC
Status: NEW
Product: Samba 4.0
Classification: Unclassified
Component: AD: LDB/DSDB/SAMDB
4.0 beta4
All All
: P5 normal
: ---
Assigned To: Andrew Bartlett
samba4-qa@samba.org
:
Depends on:
Blocks:
  Show dependency treegraph
 
Reported: 2012-08-12 11:18 UTC by Andrew Bartlett
Modified: 2015-08-03 14:30 UTC (History)
1 user (show)

See Also:


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Andrew Bartlett 2012-08-12 11:18:55 UTC
We are meant to make a record in the directory of what passwords we replicate to a Read Only DC so that if it is compromised, the admin knows how badly it the domain is compromised.
Comment 1 Matthieu Patou 2012-09-19 16:21:29 UTC
As we don't plan to advertise AD replication for 4.0 I think it shouldn't be a blocker for the release.
Comment 2 Michael Adam 2012-11-01 10:47:53 UTC
This is related to replication, multi-dc-setups. Hence this should not block
the 4.0.0 release. Moving this to the 4.1 tracking bug....
Comment 3 Stefan Metzmacher 2013-08-29 07:00:33 UTC
=> 4.2
Comment 4 Karolin Seeger 2013-12-10 15:34:51 UTC
Any news on this one?
Comment 5 Guyo 2015-08-03 14:30:55 UTC
root@DC2:~# samba-tool drs replicate AD1 DC2 dc=ad,dc=ju,dc=edu,dc=et
Failed to bind to uuid e3514235-4b06-11d1-ab04-00c04fc2dcd2 for e3514235-4b06-11d1-ab04-00c04fc2dcd2@ncacn_ip_tcp:AD1[1024,seal] NT_STATUS_LOGON_FAILURE
ERROR(<class 'samba.drs_utils.drsException'>): DRS connection to AD1 failed - drsException: DRS connection to AD1 failed: (-1073741715, 'Logon failure')
  File "/usr/local/samba/lib/python2.7/site-packages/samba/netcmd/drs.py", line 39, in drsuapi_connect
    (ctx.drsuapi, ctx.drsuapi_handle, ctx.bind_supported_extensions) = drs_utils.drsuapi_connect(ctx.server, ctx.lp, ctx.creds)
  File "/usr/local/samba/lib/python2.7/site-packages/samba/drs_utils.py", line 54, in drsuapi_connect
    raise drsException("DRS connection to %s failed: %s" % (server, e))



At the time I want to start replication using the above command it displays the above error,how can I fix the problem.