Hello, We are familiar with using IPA with OTP, we have a different cluster that it works on with no issues.
This has been present since we spun up this cluster. Time sync was an issue between replicas and primary, that is resolved, but issue is still present. Resetting the krbPasswordExpiration allows everything to work with and without OTP tokens. --Russ -- _______________________________________________ FreeIPA-users mailing list -- freeipa-users@lists.fedorahosted.org To unsubscribe send an email to freeipa-users-le...@lists.fedorahosted.org Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedorahosted.org/archives/list/freeipa-users@lists.fedorahosted.org Do not reply to spam, report it: https://pagure.io/fedora-infrastructure/new_issue