Dear all,
I just ended up deploying NethServer release 6.7 (final).
It acts also as DNS, DHCP disabled. It’s configured as PDC for unionfidi.lan domain, IP address 10.0.0.200
I fired up a Windows 7 virtual machine, to test how it joins the domain, with PDC’s IP address as DNS.
I get this message:
0x0000232D RCODE_REFUSED
An error occurred when DNS was queried for the service location (SRV)
resource record used to locate an Active Directory Domain Controller (AD
DC) for domain "unionfidi.lan".
The query was for the SRV record for _ldap._tcp.dc._msdcs.unionfidi.lan
Even not joined to domain, in computer network properties, domain suffix unionfidi.lan is present.
I performed an ipconfig/registerdns on Win 7, waited 15 minutes.
Then I did nslookup onto NethServer
Hi,
thank you for clarifying.
I hope I’ve been clear in my explanation.
I’m giving a try to NS, to get rid of our medieval Samba 3.0 still running!
So, what can I do to make Win 7 machine member of NT domain?
well, modified from unionfidi.lan to unionfidi.
doesn’t work.
NS server runs samba 3.6.23-24.el6_7, which should support Windows 7.
I receive a message saying 0x0000232B RCODE_NAME_ERROR non existent DNS name
On Win 7 box, I set DNS correspondint to NS IP.
thank you @robb, already tried that stuff, with no chance.
and IPv6 already deselected.
On NS, primary DNS is itself (10.0.0.200), secondary is Google (8.8.4.4)
Hi Furuvio,
It looks like the Win 7 machine does not know that NS is also DNS responsable.
1 check that you have DNS set up correctly on NS. and that there is a record for NS itself
2 check that on win7 machine you do not have the firewall up
3 dns suffix is correct ?
Are the IP settings for the win client obtained via DHCP or static ?
if you do a dig command on NS console for your domain what does it return ?
hi there.
because of our Sophos UTM, I couldn’t join a workstation on 10.0.1.x to the domain on 10.0.0.x.
My NS IP is 10.0.0.200, former working ldap server was 10.0.0.2
I created a policy allowing ports 389 (ldap) and 445 (microsoft-ds) from 10.0.1.x to 10.0.0.200.
netstat -a | grep mydom
myserver.mydom:microsoft-ds
myserver.mydom.lan:ldap
cat /etc/services | grep microsoft
microsoft-ds 445/tcp
microsoft-ds 445/udp
Now the workstaton joins the domain.
The workstation was patched with registry key mentioned by @Nas
I have also modified c:\windows\system32\drivers\etc\hosts with