On Fri, Jan 17, 2014 at 03:35:03PM +0100, Petr Spacek wrote:
> On 17.1.2014 15:13, Stanislav Zidek wrote:
> >Hi everybody,
> >I'm struggling with IPA failover and would be grateful for any advice.
> >I've setup a IPA server, added some client machines and users, then
> >created a replica, added replica address to /etc/sssd/sssd.conf on
> BTW the best approach is to use SRV records in DNS so clients will
> automatically pick up new replicas. You will not need to touch
> sssd.conf at all.
+1 I would recommend the SRV records as well if your DNS is managed by
the IPA server. No need to touch the client config.
> >clients. Everything fine so far. But when I simulate problem with first
> >IPA server (by issuing "service ipa stop"). Then things start to get
> >weird to me. I cannot login to clients, until I make a "service sssd
> >restart" on them and wait few minutes.
> >Am I doing something wrong? Is this expected behaviour?
> I will let SSSD guys to comment on this.
As Dmitri commented in the other thread, logs and config would be
Freeipa-users mailing list