[Freeipa-users] Re: ipa-healthcheck with fresh replica

2020-06-07 Thread Jochen Kellner via FreeIPA-users
Rob Crittenden via FreeIPA-users writes: > Jochen Kellner via FreeIPA-users wrote: >> Topology: >> freeipa1 + freeipa2: CentOS Linux release 7.8.2003 (Core) (upgrade from >> older CentOS 7 releases) >> DNS, CA, KRA, AD trust >> freeipa1 is CA renewal master >> >> ERROR: >>

[Freeipa-users] Re: ipa-healthcheck with fresh replica

2020-06-07 Thread Rob Crittenden via FreeIPA-users
Jochen Kellner via FreeIPA-users wrote: > > Hi, > > I've been running IPA on CentOS 7 for some time on two servers with > integrated CA. With the release of CentOS 8.1 I tried upgrading with a > second replica - but scrapped that due to the problem with the wrong > samba libraries linked. Since

[Freeipa-users] Better way to upgrade IPAServer4.6.4 to 4.6.5 + OS 7.6 to 7.7?

2020-06-07 Thread Karim Bourenane via FreeIPA-users
Hello Team I have some questions : 1°) I need your help, to find the better way to upgrade my 3 servers linked (replicat). I want to upgrade servers from CentOS 7.6 to CentOS7.7 with update in same time the IPAServer (or separately ?) After searching on Freeipa.org and other site, i find :

[Freeipa-users] Re: Java SIGABRT on PKI spawn process installation step

2020-06-07 Thread Alexander Bokovoy via FreeIPA-users
On su, 07 kesä 2020, David Sastre via FreeIPA-users wrote: Hello, Although I'm aware that there's no official support for RPi4B on Fedora as of today, I've been playing with the mostly functional Fedora Server Minimal and ansible-freeipa. The installation process is failing for me at the PKI

[Freeipa-users] Java SIGABRT on PKI spawn process installation step

2020-06-07 Thread David Sastre via FreeIPA-users
Hello, Although I'm aware that there's no official support for RPi4B on Fedora as of today, I've been playing with the mostly functional Fedora Server Minimal and ansible-freeipa. The installation process is failing for me at the PKI spawn step due to Java hitting a SIGSEGV on JNI code, then

[Freeipa-users] ipa-healthcheck with fresh replica

2020-06-07 Thread Jochen Kellner via FreeIPA-users
Hi, I've been running IPA on CentOS 7 for some time on two servers with integrated CA. With the release of CentOS 8.1 I tried upgrading with a second replica - but scrapped that due to the problem with the wrong samba libraries linked. Since no fix is in sight I thought about migrating to Fedora

[Freeipa-users] Re: FreeIPA: replacing expired SSL (like "AddTrust External CA Root")

2020-06-07 Thread John Burns via FreeIPA-users
Finally got the freeIPA web console up. One key was discovering the chain had to be re-assembled in a file prior to running ipa-server-certinstall. I still can't run "ipa-certupdate" however. Error: Major (851968): Unspecified GSS failure. Minor code may provide more information, Minor