<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[LDAP with secondary domain controller]]></title><description><![CDATA[<p dir="auto">Let us say we have a PDC on our domain ad.example.com. SquidGuard authentication query uses something like ldap://192.168.1.1 which is the IP of PDC. If we have a secondary domain controller (setup to serve global catalog and all that) which takes over in case PDC is not available, how squidguard (or any other package/feature) can make use of it?</p>
<p dir="auto">Will manual DNS entries help? E.g. if we setup a DNS entry for ad.example.com which can be resolved to 192.168.1.1 (the PDC) and 192.168.1.2 (secondary DC), and then change the ldap query URI to ldap://ad.example.com, will it work?</p>
<p dir="auto">This is a hypothetical question/situation. I don't have any means of testing it at the moment; but I am merely curious if this is the way to do it.</p>
<p dir="auto">Thx</p>
]]></description><link>https://forum.netgate.com/topic/70450/ldap-with-secondary-domain-controller</link><generator>RSS for Node</generator><lastBuildDate>Fri, 12 Jun 2026 02:29:08 GMT</lastBuildDate><atom:link href="https://forum.netgate.com/topic/70450.rss" rel="self" type="application/rss+xml"/><pubDate>Fri, 20 Jun 2014 06:04:21 GMT</pubDate><ttl>60</ttl></channel></rss>