Hi everyone,
Samba4 has been going great for quite a while now, so I thought I would get a
little adventurous. The goal is to install Openchange with SOGo.
The SOGo part is fine, but Openchange extends the AD schema in a similar way
that Exchange extends the AD schema. To facilitate this, I joined a new DC to
the domain, and transferred the fsmo schema role to this new DC. When I say
transferred, the transfer failed and it seized the role. The schema update went
fine, but after all this I noticed replication errors had started to creep in.
On the initial DC (lachesis), I get the following from a "samba-tool drs
showrepl"
Default-First-Site-Name\LACHESIS
DSA Options: 0x0001
DSA object GUID: 89a6915d-6b54-42fb-9bf8-e670ed9f8d08
DSA invocationId: f8725c00-ec68-4fda-86c0-35a7ae76a094
INBOUND NEIGHBORS
DC=DomainDnsZones,DC=hq,DC=domain,DC=com,DC=au
Default-First-Site-Name\CHIRON via RPC
DSA object GUID: ed493864-10ef-41da-9c50-11ffc3fb2763
Last attempt @ Wed Jun 12 06:34:13 2013 EST was successful
0 consecutive failure(s).
Last success @ Wed Jun 12 06:34:13 2013 EST
DC=ForestDnsZones,DC=hq,DC=domain,DC=com,DC=au
Default-First-Site-Name\CHIRON via RPC
DSA object GUID: ed493864-10ef-41da-9c50-11ffc3fb2763
Last attempt @ Wed Jun 12 06:34:13 2013 EST was successful
0 consecutive failure(s).
Last success @ Wed Jun 12 06:34:13 2013 EST
DC=hq,DC=domain,DC=com,DC=au
Default-First-Site-Name\CHIRON via RPC
DSA object GUID: ed493864-10ef-41da-9c50-11ffc3fb2763
Last attempt @ Wed Jun 12 06:34:13 2013 EST was successful
0 consecutive failure(s).
Last success @ Wed Jun 12 06:34:13 2013 EST
CN=Schema,CN=Configuration,DC=hq,DC=domain,DC=com,DC=au
Default-First-Site-Name\CHIRON via RPC
DSA object GUID: ed493864-10ef-41da-9c50-11ffc3fb2763
Last attempt @ Wed Jun 12 06:34:13 2013 EST failed, result 58
(WERR_BAD_NET_RESP)
17 consecutive failure(s).
Last success @ Tue Jun 11 23:00:46 2013 EST
CN=Configuration,DC=hq,DC=domain,DC=com,DC=au
Default-First-Site-Name\CHIRON via RPC
DSA object GUID: ed493864-10ef-41da-9c50-11ffc3fb2763
Last attempt @ Wed Jun 12 06:34:13 2013 EST failed, result 58
(WERR_BAD_NET_RESP)
13 consecutive failure(s).
Last success @ Tue Jun 11 23:01:47 2013 EST
OUTBOUND NEIGHBORS
DC=DomainDnsZones,DC=hq,DC=domain,DC=com,DC=au
Default-First-Site-Name\CHIRON via RPC
DSA object GUID: ed493864-10ef-41da-9c50-11ffc3fb2763
Last attempt @ NTTIME(0) was successful
0 consecutive failure(s).
Last success @ NTTIME(0)
DC=ForestDnsZones,DC=hq,DC=domain,DC=com,DC=au
Default-First-Site-Name\CHIRON via RPC
DSA object GUID: ed493864-10ef-41da-9c50-11ffc3fb2763
Last attempt @ NTTIME(0) was successful
0 consecutive failure(s).
Last success @ NTTIME(0)
DC=hq,DC=domain,DC=com,DC=au
Default-First-Site-Name\CHIRON via RPC
DSA object GUID: ed493864-10ef-41da-9c50-11ffc3fb2763
Last attempt @ NTTIME(0) was successful
0 consecutive failure(s).
Last success @ NTTIME(0)
CN=Schema,CN=Configuration,DC=hq,DC=domain,DC=com,DC=au
Default-First-Site-Name\CHIRON via RPC
DSA object GUID: ed493864-10ef-41da-9c50-11ffc3fb2763
Last attempt @ NTTIME(0) was successful
0 consecutive failure(s).
Last success @ NTTIME(0)
CN=Configuration,DC=hq,DC=domain,DC=com,DC=au
Default-First-Site-Name\CHIRON via RPC
DSA object GUID: ed493864-10ef-41da-9c50-11ffc3fb2763
Last attempt @ NTTIME(0) was successful
0 consecutive failure(s).
Last success @ NTTIME(0)
KCC CONNECTION OBJECTS
Connection --
Connection name: 3badecbb-3afa-4ced-ae91-5bf3da1bdd37
Enabled: TRUE
Server DNS name : CHIRON.hq.domain.com.au
Server DN name : CN=NTDS
Settings,CN=CHIRON,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=hq,DC=domain,DC=com,DC=au
TransportType: RPC
options: 0x0001
Warning: No NC replicated for Connection!
The samba log show some interesting stuff.
[2013/06/11 23:05:11, 0]
../source4/dsdb/repl/replicated_objects.c:525(dsdb_replicated_objects_convert)
Failed to convert object
CN=ms-Exch-Container,CN=Schema,CN=Configuration,DC=hq,DC=domain,DC=com,DC=au:
WERR_GENERAL_FAILURE
[2013/06/11 23:05:11, 0]
../source4/dsdb/repl/drepl_out_helpers.c:701(dreplsrv_op_pull_source_apply_changes_trigger)
Failed to convert object