[Freeipa-users] Re: Unable to start directory server after updates

2021-09-01 Thread Jeremy Tourville via FreeIPA-users
n't understand and the issue is unrelated to named.conf. What next steps do you suggest? From: Rob Crittenden Sent: Wednesday, September 1, 2021 1:35 PM To: FreeIPA users list Cc: Jeremy Tourville Subject: Re: [Freeipa-users] Re: Unable to start dir

[Freeipa-users] Re: Unable to start directory server after updates

2021-09-01 Thread Rob Crittenden via FreeIPA-users
Jeremy Tourville via FreeIPA-users wrote: > Are you saying to place the contents of the > 34adeec5-99e9-2bf0-bebf-0f63bee316c4 directory inside the > 2761b6ca-4581-f458-192c-f5f7d43da959 directory and overwrite the contents? > (see below) > > I still don't understand what the p11-kit changes a

[Freeipa-users] Re: Unable to start directory server after updates

2021-09-01 Thread Jeremy Tourville via FreeIPA-users
Are you saying to place the contents of the 34adeec5-99e9-2bf0-bebf-0f63bee316c4 directory inside the 2761b6ca-4581-f458-192c-f5f7d43da959 directory and overwrite the contents? (see below) I still don't understand what the p11-kit changes are that I made. [root@utility /]# find / -name softh

[Freeipa-users] Re: Unable to start directory server after updates

2021-08-31 Thread Rob Crittenden via FreeIPA-users
ib64/bind/ldap.so" { > uri "ldapi://%2fvar%2frun%2fslapd-IDM-NAC-ISSA-ORG.socket"; > base "cn=dns,dc=idm,dc=nac-issa,dc=org"; > server_id "utility.idm.nac-issa.org <http://utility.idm.nac-issa.org/>"; > auth_method "sasl"; > sa

[Freeipa-users] Re: Unable to start directory server after updates

2021-08-31 Thread Florence Renaud via FreeIPA-users
keytab "/etc/named.keytab"; > pid-file "/run/named/named.pid"; > > dnssec-enable yes; > dnssec-validation yes; > > /* Path to ISC DLV key */ > bindkeys-file "/etc/named.iscdlv.key"; > > managed-keys-directory "/var/named/dynamic"; > > /

[Freeipa-users] Re: Unable to start directory server after updates

2021-08-30 Thread Jeremy Tourville via FreeIPA-users
This part of the config file is IPA-managed. * Modifications may break IPA setup or upgrades. */ dyndb "ipa" "/usr/lib64/bind/ldap.so" { uri "ldapi://%2fvar%2frun%2fslapd-IDM-NAC-ISSA-ORG.socket"; base "cn=dns,dc=idm,dc=nac-issa,dc=org"; server_id "utilit

[Freeipa-users] Re: Unable to start directory server after updates

2021-08-30 Thread Florence Renaud via FreeIPA-users
Hi, on rhel8, IPA is using named*-pkcs11*.service, not named.service. In order to manually start the bind service, you would need to use "systemctl start named-pkcs11.service". The journal may contain additional logs, as well as the output of "systemctl status named-pkcs11.service". IIRC in ipa 4

[Freeipa-users] Re: Unable to start directory server after updates

2021-08-30 Thread Alexander Bokovoy via FreeIPA-users
On su, 29 elo 2021, Jeremy Tourville via FreeIPA-users wrote: I found this page on troubleshooting - https://docs.pagure.org/bind-dyndb-ldap/BIND9/NamedCannotStart.html I can manually start named.service but cannot start named when using ipactl. Section 1 I was able to get a log (this log is p

[Freeipa-users] Re: Unable to start directory server after updates

2021-08-29 Thread Jeremy Tourville via FreeIPA-users
I found this page on troubleshooting - https://docs.pagure.org/bind-dyndb-ldap/BIND9/NamedCannotStart.html I can manually start named.service but cannot start named when using ipactl. Section 1 I was able to get a log (this log is prior to changes made in section 4) #less /var/named/data/named.

[Freeipa-users] Re: Unable to start directory server after updates

2021-08-28 Thread Jeremy Tourville via FreeIPA-users
OK, I quickly realized I couldn't yum/dnf downgrade as I still had a version/data mismatch. Now I understand what the error means. I did the latter part of my previous question and performed an ipa-server-upgrade. . The IPA services were upgraded The ipa-server-upgrade command was succ

[Freeipa-users] Re: Unable to start directory server after updates

2021-08-28 Thread Jeremy Tourville via FreeIPA-users
CentOS Linux release 8.4.2105 VERSION: 4.9.2, API_VERSION: 2.240 Prior to any updates I was at ver 8.2 of CentOS The shared library was loaded and now I can start dirsrv. THANKS! That's definitely big a step in the right direction. As I thought, my upgrade looks like it caused the version be

[Freeipa-users] Re: Unable to start directory server after updates

2021-08-28 Thread Rob Crittenden via FreeIPA-users
Jeremy Tourville via FreeIPA-users wrote: > I was doing some maintenance and updates this morning. At some point I > noticed I couldn't reach the web interface anymore. My server has been up > and running for the last year and is not a new install. I reviewed > //var/log/dirsrv/slapd-IDM-NAC-