DNS timeouts cause secd.ldap.noServers messages every 4 hours
Applies to
- ONTAP 9
- SMB
- Domain Discovery
- LDAP
Issue
- Every 4 hours below errors are seen in EMS logs:
Sun May 15 12:29:54 HKT [nodeA: secd: secd.ldap.noServers:EMERGENCY]: None of the LDAP servers configured for Vserver (NAS11) are currently accessible via the network for LDAP service type (Service: LDAP (Active Directory), Operation: SiteDiscovery).
- DNS lookups fail:
Sun May 15 20:15:39 HKT [nodeA2: secd: secd.dns.server.timed.out:error]: DNS server 10.0.0.10 did not respond to vserver = NAS11 within timeout interval.
Sun May 15 20:15:48 HKT [nodeA2: secd: secd.dns.srv.lookup.failed:error]: DNS server failed to look up service (_ldap._tcp.dc._msdcs.local.domain.net) for vserver (NAS11) with error (Operation timed out).
- DNS Pointer (PTR) records exist for each of your DC's and that they are pointing to the correct host name