Fails to create CIFS server with error operation timed out due to missing PTR record
Applies to
- ONTAP 9
- CIFS
Issue
- When trying to create a CIFS server on the SVM, it fails with
LDAP error: Local error occurred
. - SecD log shows that the SVM fails to connect DNS server:
operation timed out
.
Error: Machine account creation procedure failed
Loaded the preliminary configuration.
Successfully connected to ip 10.10.10.12, port 88 using TCP
Successfully connected to ip 10.10.10.12, port 389 using TCP
Entry for host-address: 10.10.10.12 not found in the current source: FILES. Ignoring and trying next available source
Failed to connect to 10.10.10.12 for DNS via Source Address 10.10.10.5: Operation timed out
Failed to connect to 10.10.10.22 for DNS via Source Address 10.10.10.5: Operation timed out
Source: DNS unavailable. Entry for host-address:10.10.10.12 not found in any of the available sources
FAILURE: Unable to SASL bind to LDAP server using GSSAPI: Local error
Additional info: SASL(-1): generic failure: GSSAPI Error: Unspecified GSS failure. Minor code may provide more information (Cannot determine realm for numeric host address)
Unable to connect to LDAP (Active Directory) service on dc01.ntap.local (Error: Local error)
Unable to make a connection (LDAP (Active Directory):NTAP.LOCAL), result: 7643
Retry requested, but the retry window (7000 ms) has expired; giving up.
- It works to perform a ping to DNS servers
- Packet trace shows that no DC PTR items on the DNS servers
206 2021-04-010 16:55:46.734430 10.10.10.5 10.10.10.12 DNS Standard query 0xbb10 PTR 12.10.10.10.in-addr.arpa
207 2021-04-07 16:55:46.735100 10.10.10.12 10.10.10.5 DNS Standard query response 0xbb10 No such name PTR 12.10.10.10.in-addr.arpa SOA dc01.ntap.local