Re: [Samba] Replication problems

2013-07-20 Thread Alex Ferrara
Thanks Andrew,

I did see that in the change log, but haven't tried it as of yet.

aF

On 17/06/2013, at 9:01 PM, Andrew Bartlett  wrote:

> On Wed, 2013-06-12 at 06:54 +1000, Alex Ferrara wrote:
>> Hi everyone,
>> 
>> Samba4 has been going great for quite a while now, so I thought I would get 
>> a little adventurous. The goal is to install Openchange with SOGo.
>> 
>> The SOGo part is fine, but Openchange extends the AD schema in a similar way 
>> that Exchange extends the AD schema. To facilitate this, I joined a new DC 
>> to the domain, and transferred the fsmo schema role to this new DC. When I 
>> say transferred, the transfer failed and it seized the role. The schema 
>> update went fine, but after all this I noticed replication errors had 
>> started to creep in.
> 
>> 
>> 
>> I have tried manually replicating, but this doesn't seem to work. Any 
>> insight would be fantastic.
> 
> Some of this has improved in master in the past few days.  We found some
> issues in our replication code, and have been slowly fixing it, but due
> to the complexity of replication, when we write tests we often find even
> more issues :-)
> 
> Andrew Bartlett
> 
> -- 
> Andrew Bartletthttp://samba.org/~abartlet/
> Authentication Developer, Samba Team   http://samba.org
> 
> 

Alex Ferrara
Director
Receptive IT Solutions

P 0403 604 604
F (02) 4822 7700
E a...@receptiveit.com.au
W www.receptiveit.com.au



-- 
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/options/samba


Re: [Samba] Replication problems

2013-06-17 Thread Andrew Bartlett
On Wed, 2013-06-12 at 06:54 +1000, Alex Ferrara wrote:
> Hi everyone,
> 
> Samba4 has been going great for quite a while now, so I thought I would get a 
> little adventurous. The goal is to install Openchange with SOGo.
> 
> The SOGo part is fine, but Openchange extends the AD schema in a similar way 
> that Exchange extends the AD schema. To facilitate this, I joined a new DC to 
> the domain, and transferred the fsmo schema role to this new DC. When I say 
> transferred, the transfer failed and it seized the role. The schema update 
> went fine, but after all this I noticed replication errors had started to 
> creep in.

> 
> 
> I have tried manually replicating, but this doesn't seem to work. Any insight 
> would be fantastic.

Some of this has improved in master in the past few days.  We found some
issues in our replication code, and have been slowly fixing it, but due
to the complexity of replication, when we write tests we often find even
more issues :-)

Andrew Bartlett

-- 
Andrew Bartletthttp://samba.org/~abartlet/
Authentication Developer, Samba Team   http://samba.org


-- 
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/options/samba


[Samba] Replication problems

2013-06-11 Thread Alex Ferrara
Hi everyone,

Samba4 has been going great for quite a while now, so I thought I would get a 
little adventurous. The goal is to install Openchange with SOGo.

The SOGo part is fine, but Openchange extends the AD schema in a similar way 
that Exchange extends the AD schema. To facilitate this, I joined a new DC to 
the domain, and transferred the fsmo schema role to this new DC. When I say 
transferred, the transfer failed and it seized the role. The schema update went 
fine, but after all this I noticed replication errors had started to creep in.

On the initial DC (lachesis), I get the following from a "samba-tool drs 
showrepl"

Default-First-Site-Name\LACHESIS
DSA Options: 0x0001
DSA object GUID: 89a6915d-6b54-42fb-9bf8-e670ed9f8d08
DSA invocationId: f8725c00-ec68-4fda-86c0-35a7ae76a094

 INBOUND NEIGHBORS 

DC=DomainDnsZones,DC=hq,DC=domain,DC=com,DC=au
Default-First-Site-Name\CHIRON via RPC
DSA object GUID: ed493864-10ef-41da-9c50-11ffc3fb2763
Last attempt @ Wed Jun 12 06:34:13 2013 EST was successful
0 consecutive failure(s).
Last success @ Wed Jun 12 06:34:13 2013 EST

DC=ForestDnsZones,DC=hq,DC=domain,DC=com,DC=au
Default-First-Site-Name\CHIRON via RPC
DSA object GUID: ed493864-10ef-41da-9c50-11ffc3fb2763
Last attempt @ Wed Jun 12 06:34:13 2013 EST was successful
0 consecutive failure(s).
Last success @ Wed Jun 12 06:34:13 2013 EST

DC=hq,DC=domain,DC=com,DC=au
Default-First-Site-Name\CHIRON via RPC
DSA object GUID: ed493864-10ef-41da-9c50-11ffc3fb2763
Last attempt @ Wed Jun 12 06:34:13 2013 EST was successful
0 consecutive failure(s).
Last success @ Wed Jun 12 06:34:13 2013 EST

CN=Schema,CN=Configuration,DC=hq,DC=domain,DC=com,DC=au
Default-First-Site-Name\CHIRON via RPC
DSA object GUID: ed493864-10ef-41da-9c50-11ffc3fb2763
Last attempt @ Wed Jun 12 06:34:13 2013 EST failed, result 58 
(WERR_BAD_NET_RESP)
17 consecutive failure(s).
Last success @ Tue Jun 11 23:00:46 2013 EST

CN=Configuration,DC=hq,DC=domain,DC=com,DC=au
Default-First-Site-Name\CHIRON via RPC
DSA object GUID: ed493864-10ef-41da-9c50-11ffc3fb2763
Last attempt @ Wed Jun 12 06:34:13 2013 EST failed, result 58 
(WERR_BAD_NET_RESP)
13 consecutive failure(s).
Last success @ Tue Jun 11 23:01:47 2013 EST

 OUTBOUND NEIGHBORS 

DC=DomainDnsZones,DC=hq,DC=domain,DC=com,DC=au
Default-First-Site-Name\CHIRON via RPC
DSA object GUID: ed493864-10ef-41da-9c50-11ffc3fb2763
Last attempt @ NTTIME(0) was successful
0 consecutive failure(s).
Last success @ NTTIME(0)

DC=ForestDnsZones,DC=hq,DC=domain,DC=com,DC=au
Default-First-Site-Name\CHIRON via RPC
DSA object GUID: ed493864-10ef-41da-9c50-11ffc3fb2763
Last attempt @ NTTIME(0) was successful
0 consecutive failure(s).
Last success @ NTTIME(0)

DC=hq,DC=domain,DC=com,DC=au
Default-First-Site-Name\CHIRON via RPC
DSA object GUID: ed493864-10ef-41da-9c50-11ffc3fb2763
Last attempt @ NTTIME(0) was successful
0 consecutive failure(s).
Last success @ NTTIME(0)

CN=Schema,CN=Configuration,DC=hq,DC=domain,DC=com,DC=au
Default-First-Site-Name\CHIRON via RPC
DSA object GUID: ed493864-10ef-41da-9c50-11ffc3fb2763
Last attempt @ NTTIME(0) was successful
0 consecutive failure(s).
Last success @ NTTIME(0)

CN=Configuration,DC=hq,DC=domain,DC=com,DC=au
Default-First-Site-Name\CHIRON via RPC
DSA object GUID: ed493864-10ef-41da-9c50-11ffc3fb2763
Last attempt @ NTTIME(0) was successful
0 consecutive failure(s).
Last success @ NTTIME(0)

 KCC CONNECTION OBJECTS 

Connection --
Connection name: 3badecbb-3afa-4ced-ae91-5bf3da1bdd37
Enabled: TRUE
Server DNS name : CHIRON.hq.domain.com.au
Server DN name  : CN=NTDS 
Settings,CN=CHIRON,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=hq,DC=domain,DC=com,DC=au
TransportType: RPC
options: 0x0001
Warning: No NC replicated for Connection!


The samba log show some interesting stuff.
[2013/06/11 23:05:11,  0] 
../source4/dsdb/repl/replicated_objects.c:525(dsdb_replicated_objects_convert)
  Failed to convert object 
CN=ms-Exch-Container,CN=Schema,CN=Configuration,DC=hq,DC=domain,DC=com,DC=au: 
WERR_GENERAL_FAILURE
[2013/06/11 23:05:11,  0] 
../source4/dsdb/repl/drepl_out_helpers.c:701(dreplsrv_op_pull_source_apply_changes_trigger)
  Failed to convert object