I created new DNA ranges on my primary master, this resolved the issue.
I think the issue was not adding any new user on the new master before
decommissioning the old ones.
Petr Vobornik skrev den 2015-05-26 13:22:
On 05/26/2015 01:12 PM, Viktor Voltaire wrote:
I run a setup of two freeipa servers 4.1 on centos 7.
I have recently migrated from my my old master to a new one,
decommissioning the two old servers and setting up another new replica.
When i try to add a new user i get the following error:
ERROR: Operations error: Allocation of a new value for range cn=posix
ids,cn=distributed numeric assignment plugin,cn=plugins,cn=config
failed! Unable to proceed.
please read "RANGES" section of `man ipa-replica-manage`
Guessing what could have happened:
- new servers were created but none got DNA range because no new user
nor group was created there
- when servers were decommissioned, their ranges were not returned
back to different master (this might be bug).
Could be fixed by creating new DNA ranges on the new masters using
Manage your subscription for the Freeipa-users mailing list:
Go to http://freeipa.org for more info on the project