[Freeipa-users] Re: certmonger upgrade failure

2018-07-02 Thread Harald Dunkel via FreeIPA-users
On 6/28/18 2:19 PM, Harald Dunkel via FreeIPA-users wrote: The dbus problem has been resolved by reinstalling the dbus RPMs. journalctl still shows a lot of "Connection refused" messages for dbus, see attachment. certmonger appears to be running when started on the command line (does it?), but

[Freeipa-users] Re: (no subject)

2018-07-02 Thread Pieter Baele via FreeIPA-users
Hi, I was indeed thinking on using OAuth for the application (SAS Viya). Standard platform: ADFS. Adding Keycloak is do-able, but currently not in scope. We are a small (sub)team and how much is manage-able? ;) The applicaton - SAS Viya - always needs LDAP as identity store - in combination with

[Freeipa-users] Re: (no subject)

2018-07-02 Thread Alexander Bokovoy via FreeIPA-users
On ma, 02 heinä 2018, Pieter Baele via FreeIPA-users wrote: Hi, We have an application (Spring LDAP backend) that uses ketyabs in the IPA domain for SSO auth. No problems at all for internal FreeIPA users after they have a valid ticket (using MIT Kerberos for Windows) and a correctly configured

[Freeipa-users] Spring LDAP connection to FreeIPA for AD trust users

2018-07-02 Thread Pieter Baele via FreeIPA-users
Hi, We have an application (Spring LDAP backend) that uses ketyabs in the IPA domain for SSO auth. No problems at all for internal FreeIPA users after they have a valid ticket (using MIT Kerberos for Windows) and a correctly configured browser. An AD user is never present in IPA itself as an ine

[Freeipa-users] (no subject)

2018-07-02 Thread Pieter Baele via FreeIPA-users
Hi, We have an application (Spring LDAP backend) that uses ketyabs in the IPA domain for SSO auth. No problems at all for internal FreeIPA users after they have a valid ticket (using MIT Kerberos for Windows) and a correctly configured browser. An AD user is never present in IPA itself as an ine