Re: [Freeipa-devel] [PATCH] 095 Fix ipa-dns-install

2011-07-15 Thread Rob Crittenden

Martin Kosek wrote:

When DNS plugin is installed via ipa-dns-install and user has a valid
Kerberos ticket at the time, the DNS installation is corrupt and named
won't start, reporting Preauthentication error.

When the non-DM identity is used for authentication, krbprincipalkey
attribute in DNS service LDAP record is not created, thus leading
to the error. This patch makes sure that authentication with Directory
Manager password is used every time.

https://fedorahosted.org/freeipa/ticket/1483


ACK.

___
Freeipa-devel mailing list
Freeipa-devel@redhat.com
https://www.redhat.com/mailman/listinfo/freeipa-devel


Re: [Freeipa-devel] [PATCH] 095 Fix ipa-dns-install

2011-07-15 Thread Martin Kosek
On Fri, 2011-07-15 at 11:34 -0400, Rob Crittenden wrote:
 Martin Kosek wrote:
  When DNS plugin is installed via ipa-dns-install and user has a valid
  Kerberos ticket at the time, the DNS installation is corrupt and named
  won't start, reporting Preauthentication error.
 
  When the non-DM identity is used for authentication, krbprincipalkey
  attribute in DNS service LDAP record is not created, thus leading
  to the error. This patch makes sure that authentication with Directory
  Manager password is used every time.
 
  https://fedorahosted.org/freeipa/ticket/1483
 
 ACK.

Pushed to master, ipa-2-0.

Martin

___
Freeipa-devel mailing list
Freeipa-devel@redhat.com
https://www.redhat.com/mailman/listinfo/freeipa-devel