CIFS share not accessible due to DNS not responding properly
Applies to
- Ontap 9.x
- CIFS
Issue
- Users not able to access CIFS share with IP or FQDN.
- Some users are able to access with IP and FQDN due to cache.
- DNS check shows all DNS servers are up and Ontap is able to contact the DNS.
clus1::> vserver services name-service dns show -vserver svm1
Name Server
Vserver Name Server Status Status Details
------------- --------------- ------------ --------------------------
svm1 up Response time (msec): 52
1xx.1xc.x.xx
svm1 up Response time (msec): 345
1xx.1xc.1x.xc
svm1 up Response time (msec): 344
1xx.1xc.1x.xc
3 entries were displayed.
- No pref-DCs set.
clus1::*> vserver cifs domain preferred-dc show -vserver svm1
There are no entries matching your query.
- Discovery-mode is set to all.
clus1::*> vserver cifs domain discovered-servers discovery-mode show
Vserver Mode
------------- --------
svm1 all
- No discovered-servers are seen.
clus1::*> vserver cifs domain discovered-servers show -vserver svm1
There are no entries matching your query.
- cifs check ouptut is as below.
clus1::>cifs check -vserver svm1
Vserver : svm1
Cifs NetBIOS Name : nb1_xx
Cifs Status : Running
Site :
Node Name DC Server Name DC Server IP Status Status Details
--------------- -------------- --------------- ------ --------------
node-01 xc000.xxcc.nct - down SecD Error: no server available
node-02 xc000.xxcc.nct - down SecD Error: no server available
2 entries were displayed.
- Below events are seen in EMS logs.
Wed Feb 26 xx:03:xx +0000 [node-02: secd: secd.dns.srv.lookup.failed:error]: DNS server failed to look up service (_ldap._tcp.cii_encrypt/hCTxcxcxcxcPRY4=/cii_encrypt) for vserver (svm1) with error (No server(s) found).
Wed Feb 26 xx:02:xx +0000 [node-02: secd: secd.cifsAuth.problem:error]: vserver (svm1) General CIFS authentication problem. Error: User authentication procedure failed CIFS SMB2 Share mapping - Client Ip = 10.xx.2xx.xc
[ 0 ms] Login attempt by domain user 'xyz.com\username' using NTLMv2 style security
**[ 1] FAILURE: Unable to make a connection (NetLogon:xc000.xxcc.nct), Result: RESULT_ERROR_SECD_IN_DISCOVERY
[ 1] CIFS authentication failed
[ 2] Unable to make a connection (LDAP (Active Directory):xc000.xxcc.nct), Result: RESULT_ERROR_SECD_IN_DISCOVERY