I’m trying to confirm where authentication for file shares occurs. We have a remote site with a univention backup controller (the primary domain controller is in our main site, running a taken over active directory).

Recently the vpn link between sites dropped, and stopped users at the remote site from accessing a file share (hosted by a member server at the remote site).

This would indicate authentication is done at the dc master over the vpn link. Can we force authentication to fail over to the remote site backup controller?




for usual services it depends on the settings defined in the UCR variables in “ldap/server/*”. These should point to a local LDAP-instance first.
I would check which LDAP-server is configured on the member server.

