[Freeipa-users] Re: FreeIPA server packages upgrade best practice

2021-07-16 Thread Suchismita Panda via FreeIPA-users
automated patching to just target kernel packages, will that > be risk free? > > -Suchi > > On Thu, Jun 17, 2021 at 1:00 PM Rob Crittenden > wrote: > >> Suchismita Panda via FreeIPA-users wrote: >> > Thanks all for the reply. >> > >>

[Freeipa-users] Re: FreeIPA server packages upgrade best practice

2021-06-18 Thread Suchismita Panda via FreeIPA-users
: > Suchismita Panda via FreeIPA-users wrote: > > Thanks all for the reply. > > > > Circling back again - We have to do the normal OS upgrade for the > > FreeIPA servers and would like to exclude the FreeIPA package to be > > upgraded. I would like to know the n

[Freeipa-users] Re: FreeIPA server packages upgrade best practice

2021-06-17 Thread Suchismita Panda via FreeIPA-users
rst > try the upgrade on them before we do it in production. We have too many > eggs in one basket to risk problems with IPA. > > > On Mar 31, 2021, at 2:45 PM, Suchismita Panda via FreeIPA-users < > freeipa-users@lists.fedorahosted.org> wrote: > > > > Hi, > > >

[Freeipa-users] FreeIPA server packages upgrade best practice

2021-03-31 Thread Suchismita Panda via FreeIPA-users
Hi, I would like to know the best practice for patching FreeIPA-Server packages. We generally have daily patching enabled in our servers. Will it be a good idea to do automatic patching of FreeIPA-Server packages? If we want to restrict the FreeIPA-Server packages from automatomatic upgrade and

[Freeipa-users] Re: problem with AD user login

2021-01-07 Thread Suchismita Panda via FreeIPA-users
ns, e.g. timeouts, object wan not found etc. > > Does the 'id' for an AD user command fail on all clients? In this case > please check the output of the same 'id' command on the master or > replica if all groups can be resolved. If there is a GID in the output > without a mat

[Freeipa-users] Re: problem with AD user login

2021-01-04 Thread Suchismita Panda via FreeIPA-users
uchismita Panda via FreeIPA-users wrote: > > Hi, > > > > We have a pair of FreeIPA servers (1 master and 1 replica) > > Freeipa server version 4.6.8 > > > > Recently when we are trying to enroll any new freeipa client to the > > server, the installation g

[Freeipa-users] problem with AD user login

2020-12-30 Thread Suchismita Panda via FreeIPA-users
Hi, We have a pair of FreeIPA servers (1 master and 1 replica) Freeipa server version 4.6.8 Recently when we are trying to enroll any new freeipa client to the server, the installation goes successful, but AD user login does not work. Even the client fails to retrieve AD user information using

[Freeipa-users] Re: AD users login and lookup fails with short name in Ubuntu16 freeipa-client

2020-05-26 Thread Suchismita Panda via FreeIPA-users
,now 1.13.4-1ubuntu1.15 amd64 [installed]* What additional configuration can we add to support name resolution order? TIA On Sun, May 24, 2020 at 10:44 PM Sumit Bose via FreeIPA-users < freeipa-users@lists.fedorahosted.org> wrote: > On Fri, May 22, 2020 at 04:07:08PM -0700, Suchismita

[Freeipa-users] AD users login and lookup fails with short name in Ubuntu16 freeipa-client

2020-05-22 Thread Suchismita Panda via FreeIPA-users
Hi, We are trying to configure our FreeIPA environment. We are using freeipa-client in both Ubuntu 18 and Ubuntu 16 servers. The FreeIPA server has one way trust to our AD. We have the domain name resolution order setup in the FreeIPA server. The AD users are able to ssh login to Ubuntu 18