n't understand and the issue is unrelated to named.conf. What next
steps do you suggest?
From: Rob Crittenden
Sent: Wednesday, September 1, 2021 1:35 PM
To: FreeIPA users list
Cc: Jeremy Tourville
Subject: Re: [Freeipa-users] Re: Unable to start dir
Jeremy Tourville via FreeIPA-users wrote:
> Are you saying to place the contents of the
> 34adeec5-99e9-2bf0-bebf-0f63bee316c4 directory inside the
> 2761b6ca-4581-f458-192c-f5f7d43da959 directory and overwrite the contents?
> (see below)
>
> I still don't understand what the p11-kit changes a
Are you saying to place the contents of the
34adeec5-99e9-2bf0-bebf-0f63bee316c4 directory inside the
2761b6ca-4581-f458-192c-f5f7d43da959 directory and overwrite the contents?
(see below)
I still don't understand what the p11-kit changes are that I made.
[root@utility /]# find / -name softh
ib64/bind/ldap.so" {
> uri "ldapi://%2fvar%2frun%2fslapd-IDM-NAC-ISSA-ORG.socket";
> base "cn=dns,dc=idm,dc=nac-issa,dc=org";
> server_id "utility.idm.nac-issa.org <http://utility.idm.nac-issa.org/>";
> auth_method "sasl";
> sa
keytab "/etc/named.keytab";
> pid-file "/run/named/named.pid";
>
> dnssec-enable yes;
> dnssec-validation yes;
>
> /* Path to ISC DLV key */
> bindkeys-file "/etc/named.iscdlv.key";
>
> managed-keys-directory "/var/named/dynamic";
>
> /
This part of the config file is IPA-managed.
* Modifications may break IPA setup or upgrades.
*/
dyndb "ipa" "/usr/lib64/bind/ldap.so" {
uri "ldapi://%2fvar%2frun%2fslapd-IDM-NAC-ISSA-ORG.socket";
base "cn=dns,dc=idm,dc=nac-issa,dc=org";
server_id "utilit
Hi,
on rhel8, IPA is using named*-pkcs11*.service, not named.service. In order
to manually start the bind service, you would need to use "systemctl start
named-pkcs11.service".
The journal may contain additional logs, as well as the output of
"systemctl status named-pkcs11.service".
IIRC in ipa 4
On su, 29 elo 2021, Jeremy Tourville via FreeIPA-users wrote:
I found this page on troubleshooting -
https://docs.pagure.org/bind-dyndb-ldap/BIND9/NamedCannotStart.html
I can manually start named.service but cannot start named when using ipactl.
Section 1
I was able to get a log (this log is p
I found this page on troubleshooting -
https://docs.pagure.org/bind-dyndb-ldap/BIND9/NamedCannotStart.html
I can manually start named.service but cannot start named when using ipactl.
Section 1
I was able to get a log (this log is prior to changes made in section 4)
#less /var/named/data/named.
OK, I quickly realized I couldn't yum/dnf downgrade as I still had a
version/data mismatch. Now I understand what the error means. I did the
latter part of my previous question and performed an ipa-server-upgrade.
.
The IPA services were upgraded
The ipa-server-upgrade command was succ
CentOS Linux release 8.4.2105
VERSION: 4.9.2, API_VERSION: 2.240
Prior to any updates I was at ver 8.2 of CentOS
The shared library was loaded and now I can start dirsrv. THANKS! That's
definitely big a step in the right direction. As I thought, my upgrade looks
like it caused the version be
Jeremy Tourville via FreeIPA-users wrote:
> I was doing some maintenance and updates this morning. At some point I
> noticed I couldn't reach the web interface anymore. My server has been up
> and running for the last year and is not a new install. I reviewed
> //var/log/dirsrv/slapd-IDM-NAC-
12 matches
Mail list logo