Re: [Samba] Are secure DNS updates truly working?
- Date: Tue, 29 Aug 2017 19:54:42 -0300
- From: George via samba <samba@xxxxxxxxxxxxxxx>
- Subject: Re: [Samba] Are secure DNS updates truly working?
On Tue, Aug 29, 2017 at 6:55 PM, lingpanda101 <lingpanda101 at gmail.com >
> I can confirm they work on 4.6.7. I do recall they have worked for
> several prior versions as well. I can't seem to get PTR records to
> register though.
> The refused request doesn't necessarily mean it's not working. Windows
> will send an un-secure request first, followed by a secure request if
You are right with that, I was looking at the first unauthenticated
attempt. Still, the 2nd authenticated attempt fails. Wireshark reports
"Server failure" in this case, and Samba log as follows:
[2017/08/29 19:25:27.837126, 2]
Got a dns update request.
[2017/08/29 19:25:27.837704, 1]
update count is 3
[2017/08/29 19:25:27.837734, 2]
Looking at record:
[2017/08/29 19:25:27.837743, 2]
[2017/08/29 19:25:27.837748, 1] ../librpc/ndr/ndr.c:413(ndr_print_debug)
discard_const(update): struct dns_res_rec
name : 'foo.domain.com'
rr_type : DNS_QTYPE_AAAA (0x1C)
rr_class : DNS_QCLASS_ANY (0xFF)
ttl : 0x00000000 (0)
length : 0x0000 (0)
rdata : union dns_rdata(case 0x1C)
ipv6_record : (null)
unexpected : DATA_BLOB length=0
To unsubscribe from this list go to the following URL and read the