Manually Replicating Directory Partitions

From SambaWiki
Revision as of 21:00, 12 May 2017 by Mmuehlfeld (talk | contribs) (Being more concrete about that forcing the replication does not create a replication agreement.)
The printable version is no longer supported and may have rendering errors. Please update your browser bookmarks and please use the default browser print function instead.

Introduction

In certain situations, it is necessary to manually replicate an Active Directory (AD) partition from one domain controller (DC) to another.




Manually Replicating Directory Partitions

To manually replicate all AD partitions from domain controller DC1 to DC2:

# samba-tool drs replicate DC2 DC1 dc=samdom,dc=example,dc=com
Replicate from DC1 to DC2 was successful.

# samba-tool drs replicate DC2 DC1 DC=ForestDnsZones,DC=samdom,DC=example,DC=com
Replicate from DC1 to DC2 was successful.

# samba-tool drs replicate DC2 DC1 CN=Configuration,DC=samdom,DC=example,DC=com
Replicate from DC1 to DC2 was successful.

# samba-tool drs replicate DC2 DC1 DC=DomainDnsZones,DC=samdom,DC=example,DC=com
Replicate from DC1 to DC2 was successful.

# samba-tool drs replicate DC2 DC1 CN=Schema,CN=Configuration,DC=samdom,DC=example,DC=com
Replicate from DC1 to DC2 was successful.

By default, the samba-tool drs replicate command replicates only object operations that were not ran on the destination DC. This includes:

  • Create new objects
  • Updated changed objects
  • Delete removed objects

To resynchronise all objects in a partition, pass the --full-sync option to the command.