Steve,
What version of IPA are you running? Is SELinux in permissive mode?
What are the permissions on: /var/lib/ipa-client/pki/kdc-ca-bundle.pem and
/var/kerberos/krb5kdc/kdc.crt ?
could you share your /etc/sssd/sssd.conf ?
On Tue, Sep 5, 2017 at 2:42 PM, Steve Huston via FreeIPA-users <
You can check here the hardware recommendations:
https://access.redhat.com/documentation/en-US/Red_Hat_
Enterprise_Linux/7/html/Linux_Domain_Identity_Authentication_and_Policy_
Guide/installing-ipa.html#server-hw-recomendations
On Mon, Aug 28, 2017 at 1:35 AM, Fraser Tweedale via FreeIPA-users
Hi Bjoern,
AFAIK it should be possible to an AD user use FreeIPA vault, once you have
setup trust.
You can find documentation about AD and Vault here:
https://www.freeipa.org/page/Trusts
https://www.freeipa.org/page/V4/Password_Vault_1.2
https://www.freeipa.org/page/Active_Directory_trust_setup
Randy,
Actually, there is not much difference between a replica and a master (in
general),
you can check more details in this blog post from rcrit:
https://blog-rcritten.rhcloud.com/?p=67
About Dir. Server failing, could you share the logs?
Hi Alka,
I think you can get useful info here: https://www.redhat.com/
archives/freeipa-users/2017-May/msg00028.html
On Fri, Aug 4, 2017 at 8:31 AM, Alka Murali via FreeIPA-users <
freeipa-users@lists.fedorahosted.org> wrote:
> Hello,
>
> I have implemented a freeipa server and enrolled many