ML
    • Recent
    • Categories
    • Tags
    • Popular
    • Users
    • Groups
    • Register
    • Login

    Handling DNS in a Single Active Directory Domain Controller Environment

    Scheduled Pinned Locked Moved IT Discussion
    ad dcaddnswindowswindows server
    242 Posts 21 Posters 54.9k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • pmonchoP
      pmoncho @scottalanmiller
      last edited by

      @scottalanmiller said in Handling DNS in a Single Active Directory Domain Controller Environment:

      @stuartjordan said in Handling DNS in a Single Active Directory Domain Controller Environment:

      I believe the forest level with Samba can only be 2008R2 though.

      Sure, but what does that really affect? Forest level limitation is nothing like an old code limitation. Nothing wrong with using a 2008 R2 Forest level.

      If I am reading this correctly, I believe Samba 4.4 and higher can go to 2012 R2.

      https://wiki.samba.org/index.php/Raising_the_Functional_Levels

      scottalanmillerS 1 Reply Last reply Reply Quote 2
      • CloudKnightC
        CloudKnight @scottalanmiller
        last edited by

        @scottalanmiller Very true, nothing wrong at all in using. believe there was some improvements to DFS-R in higher Forrest levels, but if your obviously using Samba in your environment you probably would not be using this role anyway.

        scottalanmillerS 1 Reply Last reply Reply Quote 0
        • scottalanmillerS
          scottalanmiller @pmoncho
          last edited by

          @pmoncho said in Handling DNS in a Single Active Directory Domain Controller Environment:

          @scottalanmiller said in Handling DNS in a Single Active Directory Domain Controller Environment:

          @stuartjordan said in Handling DNS in a Single Active Directory Domain Controller Environment:

          I believe the forest level with Samba can only be 2008R2 though.

          Sure, but what does that really affect? Forest level limitation is nothing like an old code limitation. Nothing wrong with using a 2008 R2 Forest level.

          If I am reading this correctly, I believe Samba 4.4 and higher can go to 2012 R2.

          https://wiki.samba.org/index.php/Raising_the_Functional_Levels

          Rumor is, but I'm not sure that 4.4 is widely available yet?

          RomoR pmonchoP 2 Replies Last reply Reply Quote 0
          • scottalanmillerS
            scottalanmiller @CloudKnight
            last edited by

            @stuartjordan said in Handling DNS in a Single Active Directory Domain Controller Environment:

            @scottalanmiller Very true, nothing wrong at all in using. believe there was some improvements to DFS-R in higher Forrest levels, but if your obviously using Samba in your environment you probably would not be using this role anyway.

            Right, generally not.

            1 Reply Last reply Reply Quote 0
            • RomoR
              Romo @scottalanmiller
              last edited by

              @scottalanmiller said in Handling DNS in a Single Active Directory Domain Controller Environment:

              @pmoncho said in Handling DNS in a Single Active Directory Domain Controller Environment:

              @scottalanmiller said in Handling DNS in a Single Active Directory Domain Controller Environment:

              @stuartjordan said in Handling DNS in a Single Active Directory Domain Controller Environment:

              I believe the forest level with Samba can only be 2008R2 though.

              Sure, but what does that really affect? Forest level limitation is nothing like an old code limitation. Nothing wrong with using a 2008 R2 Forest level.

              If I am reading this correctly, I believe Samba 4.4 and higher can go to 2012 R2.

              https://wiki.samba.org/index.php/Raising_the_Functional_Levels

              Rumor is, but I'm not sure that 4.4 is widely available yet?

              Even newer versions =).

              Centos 7.5 is using 4.7.1
              Fedora 28 is using 4.8.5

              scottalanmillerS 1 Reply Last reply Reply Quote 0
              • pmonchoP
                pmoncho @scottalanmiller
                last edited by

                @scottalanmiller said in Handling DNS in a Single Active Directory Domain Controller Environment:

                @pmoncho said in Handling DNS in a Single Active Directory Domain Controller Environment:

                @scottalanmiller said in Handling DNS in a Single Active Directory Domain Controller Environment:

                @stuartjordan said in Handling DNS in a Single Active Directory Domain Controller Environment:

                I believe the forest level with Samba can only be 2008R2 though.

                Sure, but what does that really affect? Forest level limitation is nothing like an old code limitation. Nothing wrong with using a 2008 R2 Forest level.

                If I am reading this correctly, I believe Samba 4.4 and higher can go to 2012 R2.

                https://wiki.samba.org/index.php/Raising_the_Functional_Levels

                Rumor is, but I'm not sure that 4.4 is widely available yet?

                smbstatus on Ubuntu 18.1 shows Samba 4.7.6.

                scottalanmillerS 1 Reply Last reply Reply Quote 0
                • scottalanmillerS
                  scottalanmiller @Romo
                  last edited by

                  @romo said in Handling DNS in a Single Active Directory Domain Controller Environment:

                  @scottalanmiller said in Handling DNS in a Single Active Directory Domain Controller Environment:

                  @pmoncho said in Handling DNS in a Single Active Directory Domain Controller Environment:

                  @scottalanmiller said in Handling DNS in a Single Active Directory Domain Controller Environment:

                  @stuartjordan said in Handling DNS in a Single Active Directory Domain Controller Environment:

                  I believe the forest level with Samba can only be 2008R2 though.

                  Sure, but what does that really affect? Forest level limitation is nothing like an old code limitation. Nothing wrong with using a 2008 R2 Forest level.

                  If I am reading this correctly, I believe Samba 4.4 and higher can go to 2012 R2.

                  https://wiki.samba.org/index.php/Raising_the_Functional_Levels

                  Rumor is, but I'm not sure that 4.4 is widely available yet?

                  Even newer versions =).

                  Centos 7.5 is using 4.7.1
                  Fedora 28 is using 4.8.5

                  Oh wow, nevermind, lol.

                  1 Reply Last reply Reply Quote 0
                  • scottalanmillerS
                    scottalanmiller @pmoncho
                    last edited by

                    @pmoncho said in Handling DNS in a Single Active Directory Domain Controller Environment:

                    @scottalanmiller said in Handling DNS in a Single Active Directory Domain Controller Environment:

                    @pmoncho said in Handling DNS in a Single Active Directory Domain Controller Environment:

                    @scottalanmiller said in Handling DNS in a Single Active Directory Domain Controller Environment:

                    @stuartjordan said in Handling DNS in a Single Active Directory Domain Controller Environment:

                    I believe the forest level with Samba can only be 2008R2 though.

                    Sure, but what does that really affect? Forest level limitation is nothing like an old code limitation. Nothing wrong with using a 2008 R2 Forest level.

                    If I am reading this correctly, I believe Samba 4.4 and higher can go to 2012 R2.

                    https://wiki.samba.org/index.php/Raising_the_Functional_Levels

                    Rumor is, but I'm not sure that 4.4 is widely available yet?

                    smbstatus on Ubuntu 18.1 shows Samba 4.7.6.

                    Is that for 18.04 or 18.10, the latter released a few days ago (I need to go update some systems.)

                    CloudKnightC pmonchoP 2 Replies Last reply Reply Quote 0
                    • CloudKnightC
                      CloudKnight @scottalanmiller
                      last edited by

                      0_1539971107331_samba.png

                      yep, using 18.04.1 here...

                      1 Reply Last reply Reply Quote 0
                      • scottalanmillerS
                        scottalanmiller
                        last edited by

                        So likely a bit newer now.

                        1 Reply Last reply Reply Quote 0
                        • pmonchoP
                          pmoncho @scottalanmiller
                          last edited by

                          @scottalanmiller said in Handling DNS in a Single Active Directory Domain Controller Environment:

                          @pmoncho said in Handling DNS in a Single Active Directory Domain Controller Environment:

                          @scottalanmiller said in Handling DNS in a Single Active Directory Domain Controller Environment:

                          @pmoncho said in Handling DNS in a Single Active Directory Domain Controller Environment:

                          @scottalanmiller said in Handling DNS in a Single Active Directory Domain Controller Environment:

                          @stuartjordan said in Handling DNS in a Single Active Directory Domain Controller Environment:

                          I believe the forest level with Samba can only be 2008R2 though.

                          Sure, but what does that really affect? Forest level limitation is nothing like an old code limitation. Nothing wrong with using a 2008 R2 Forest level.

                          If I am reading this correctly, I believe Samba 4.4 and higher can go to 2012 R2.

                          https://wiki.samba.org/index.php/Raising_the_Functional_Levels

                          Rumor is, but I'm not sure that 4.4 is widely available yet?

                          smbstatus on Ubuntu 18.1 shows Samba 4.7.6.

                          Is that for 18.04 or 18.10, the latter released a few days ago (I need to go update some systems.)

                          My bad, it is 18.04.1

                          1 Reply Last reply Reply Quote 0
                          • scottalanmillerS
                            scottalanmiller
                            last edited by

                            I hadn't even realized it was out. I suppose I was out of town when it happened. But I feel like there was a lack of fanfare going on. I had heard of ElementaryOS going to 5.0 without hearing that Ubuntu 18.10 was out!

                            1 Reply Last reply Reply Quote 0
                            • ObsolesceO
                              Obsolesce @CloudKnight
                              last edited by

                              @stuartjordan said in Handling DNS in a Single Active Directory Domain Controller Environment:

                              I believe the forest level with Samba can only be 2008R2 though.

                              If you're not using Windows AD, what's it matter?

                              scottalanmillerS 1 Reply Last reply Reply Quote 0
                              • scottalanmillerS
                                scottalanmiller @Obsolesce
                                last edited by

                                @obsolesce said in Handling DNS in a Single Active Directory Domain Controller Environment:

                                @stuartjordan said in Handling DNS in a Single Active Directory Domain Controller Environment:

                                I believe the forest level with Samba can only be 2008R2 though.

                                If you're not using Windows AD, what's it matter?

                                If he's merging in DFS, it might. It's rare to do, but could matter.

                                ObsolesceO 1 Reply Last reply Reply Quote 0
                                • CloudKnightC
                                  CloudKnight
                                  last edited by

                                  https://docs.microsoft.com/en-us/previous-versions/windows/it-pro/windows-server-2008-R2-and-2008/cc754918(v=ws.10)

                                  1 Reply Last reply Reply Quote 0
                                  • scottalanmillerS
                                    scottalanmiller
                                    last edited by

                                    0_1539973773529_Screenshot from 2018-10-19 13-29-28.png

                                    So 2012 R2 benefits...

                                    1. KDC support for claims. This is a real benefit, but pretty "meh".
                                    2. New authentication policies. Whoop tee do.
                                    3. New authentication policy silos. Even more whoop tee do.

                                    That's it. Two new versions and that is all of the improvements.

                                    CloudKnightC 1 Reply Last reply Reply Quote 1
                                    • CloudKnightC
                                      CloudKnight @scottalanmiller
                                      last edited by

                                      @scottalanmiller hahaha, that's what I wanted to check....I'm sure DFS improvements were there somewhere, not sure what level though.

                                      1 Reply Last reply Reply Quote 0
                                      • ObsolesceO
                                        Obsolesce @scottalanmiller
                                        last edited by

                                        @scottalanmiller said in Handling DNS in a Single Active Directory Domain Controller Environment:

                                        @obsolesce said in Handling DNS in a Single Active Directory Domain Controller Environment:

                                        @stuartjordan said in Handling DNS in a Single Active Directory Domain Controller Environment:

                                        I believe the forest level with Samba can only be 2008R2 though.

                                        If you're not using Windows AD, what's it matter?

                                        If he's merging in DFS, it might. It's rare to do, but could matter.

                                        Oh I see, so Windows AD and other services were involved at some point.

                                        CloudKnightC scottalanmillerS 2 Replies Last reply Reply Quote 0
                                        • CloudKnightC
                                          CloudKnight @Obsolesce
                                          last edited by

                                          @obsolesce Probably unlikely to be using DFS when using Samba as your PDC but something to be aware of I suppose 🙂

                                          1 Reply Last reply Reply Quote 0
                                          • scottalanmillerS
                                            scottalanmiller @Obsolesce
                                            last edited by

                                            @obsolesce said in Handling DNS in a Single Active Directory Domain Controller Environment:

                                            @scottalanmiller said in Handling DNS in a Single Active Directory Domain Controller Environment:

                                            @obsolesce said in Handling DNS in a Single Active Directory Domain Controller Environment:

                                            @stuartjordan said in Handling DNS in a Single Active Directory Domain Controller Environment:

                                            I believe the forest level with Samba can only be 2008R2 though.

                                            If you're not using Windows AD, what's it matter?

                                            If he's merging in DFS, it might. It's rare to do, but could matter.

                                            Oh I see, so Windows AD and other services were involved at some point.

                                            Depending on what you want to do, sometimes AD has to support it.

                                            1 Reply Last reply Reply Quote 0
                                            • 1
                                            • 2
                                            • 9
                                            • 10
                                            • 11
                                            • 12
                                            • 13
                                            • 12 / 13
                                            • First post
                                              Last post