Hey Mike,
I think, you misunderstood the problem (I didn't communicate it clearly
enough).
The problem is not resolving ldap(.intern) on TJENER or clients. Thats
working.
---
locadm@tjener:~$ ping ldap.intern
PING tjener.intern (10.0.2.2) 56(84) bytes of data.
64 bytes from tjener.intern (10.0.2.2): icmp_seq=1 ttl=64 time=0.056 ms
---
---
locadm@tjener:~$ ping ldap
PING tjener.intern (10.0.2.2) 56(84) bytes of data.
64 bytes from tjener.intern (10.0.2.2): icmp_seq=1 ttl=64 time=0.089 ms
---
isc-dhcp-server does not resolve 'ldap' (anymore?), therefore the 'Could
not get Tjener LDAP object' error message.
I also couldn't find an extra search domain option. So maybe this is an
upstream bug?
And the easiest fix would be using 'localhost' (like the dhcpd examples
are suggesting) or 'ldap.intern' for ldap-server.
Greetings, Daniel
Am 01.07.23 um 06:05 schrieb Mike Gabriel:
Control: tags -1 - pending
Hi Daniel,
On Fr 30 Jun 2023 11:17:57 CEST, Daniel Teichmann wrote:
Package: debian-edu-config
Severity: important
Error messages popping up in syslog on newly installed systems..
gber (Guido Berhörster) can reproduce this issue.
less /var/log/syslog: ```
2023-06-30T10:02:21.863147+02:00 tjener dhcpd[138165]: Cannot find
host LDAP entry tjener (&(objectClass=dhcpServer)(cn=tjener))
```
I reverted your change for this as it does not address the underlying
problem.
In a Debian Edu network, all hosts should be reachable via their short
hostname (rather than their FQDN).
This is: the underlying fix for this is finding out via
ping ldap
fails whereas
ping ldap.intern
does not.
I.e. we need to check /etc/resolv.conf and if there is a "search
intern" in it. And if not, we need to find out why it is not there:
```
nameserver 127.0.0.1
search intern
```
Please revisit and find the deeper solution to this problem. Thanks!
Mike
--
DAS-NETZWERKTEAM
Daniel Teichmann
GnuPG Key ID 0x8100A778
mail: daniel.teichm...@das-netzwerkteam.de, https://das-netzwerkteam.de
OpenPGP_0xB500EFC78100A778.asc
Description: OpenPGP public key
OpenPGP_signature
Description: OpenPGP digital signature