While looking deeper in the two networks, I've still no explanation why the one I installed via USB is working out-of-the-box, and the other one, as an inplace-upgrade performed via GUI, made it impossible for win10 workstations to connect to the ad server (nethserver 7).
Walking through all KEA options, disabling "Auto collect option data", configuring DNS and domain search properly, also adding an override in unbound for the local AD server, everything is working now. Maybe there was an interference with the ISC server. IDK.
Anyway, I changed the config also for the USB installed OPNsense.
Interesting - while trying to connect the win10 worstations, I couldn't find any hint in any log. Not in the FW logs, not in the KEA logs, not in the unbound logs, nor in the general logs.
In the end the help came from AI. Also interesting.
Walking through all KEA options, disabling "Auto collect option data", configuring DNS and domain search properly, also adding an override in unbound for the local AD server, everything is working now. Maybe there was an interference with the ISC server. IDK.
Anyway, I changed the config also for the USB installed OPNsense.
Interesting - while trying to connect the win10 worstations, I couldn't find any hint in any log. Not in the FW logs, not in the KEA logs, not in the unbound logs, nor in the general logs.
In the end the help came from AI. Also interesting.
"