重复的 LSA 不可用错误
适用于
ONTAP 9
问题描述
循环 EMS 消息显示 LSA 服务器不可用,类似于以下内容
[?] Thu Jul 17 13:20:11 +0300 [node-01: secd: secd.lsa.noServers:EMERGENCY]: None of the LSA servers configured for Vserver (svm1) are currently accessible via the network.
[?] Thu Jul 17 13:20:11 +0300 [node-01: secd: secd.unexpectedFailure:error]: Unexpected SecD failure in Vserver "svm1". Details: Error: Lookup of CIFS account SID procedure failed
[3001 ms] Successfully connected to ip 10.10.11.11, port 445 using TCP
[ 6016] Unable to connect to LSA service on dc1.example.com (Error: RESULT_ERROR_SPINCLIENT_COMMAND_TIMED_OUT)
[ 6016] Successfully connected to ip 10.10.11.12, port 445 using TCP
[ 9021] Unable to connect to LSA service on dc2.example.com (Error: RESULT_ERROR_SPINCLIENT_COMMAND_TIMED_OUT)
[ 9021] No servers available for MS_LSA, vserver: 4, domain: example.com. **
[ 9021] FAILURE: Unable to make a connection (LSA:EXAMPLE.COM), Result: RESULT_ERROR_SECD_NO_SERVER_AVAILABLE
[ 9023] Could not find Windows SID 'S-1-5-21-123456789-1234567-123456789-1234'
[ 9023] SID lookup failed [ 9023] Retry requested, but the retry window (7000 ms) has expired; giving up.
数据包跟踪将确认域控制器在超过 3 秒后响应 smb negotiate 命令,或者 DC 正在使用 STATUS_INSUFF_SERVER_RESOURCES 响应会话设置