[Freeipa-users] Re: SSH with password fails - 7 (Authentication failure)

2022-01-16 Thread Sumit Bose via FreeIPA-users
Am Sun, Jan 16, 2022 at 12:50:28PM + schrieb lejeczek via FreeIPA-users: > Hi guys. > > This have puzzled my and left clueless. > It's a fresh new deployment and still only single master. > Very first & only user and I cannot 'ssh' with password - but krb ticket I > can obtain and 'ssh' with

[Freeipa-users] Re: HA / high availability service - ?

2022-01-16 Thread Alexander Bokovoy via FreeIPA-users
On su, 16 tammi 2022, lejeczek via FreeIPA-users wrote: Hi guys. I have an old - set up ~2 yrs ago - IPA domain which "survived" updates/upgrades till this day in such a way that integrated Samba serves up under different hostname/domain and serves non-enrolled clients(win 10) too. With

[Freeipa-users] Re: Use 389-ds as freeipa mirror

2022-01-16 Thread Alexander Bokovoy via FreeIPA-users
On su, 16 tammi 2022, Jim Kinney via FreeIPA-users wrote: Since SuSE doesn't support FreeIPA/IdM, and I need to use freeipa as master controller, I need to be able to have multiple suse hosted 389-ds ldap servers (9) be read-only mirrors for large numbers of compute node clients (3000). I have

[Freeipa-users] Use 389-ds as freeipa mirror

2022-01-16 Thread Jim Kinney via FreeIPA-users
Since SuSE doesn't support FreeIPA/IdM, and I need to use freeipa as master controller, I need to be able to have multiple suse hosted 389-ds ldap servers (9) be read-only mirrors for large numbers of compute node clients (3000). I have VMs on suse hosts running rocky8.5 for freeipa as test

[Freeipa-users] HA / high availability service - ?

2022-01-16 Thread lejeczek via FreeIPA-users
Hi guys. I have an old - set up ~2 yrs ago - IPA domain which "survived" updates/upgrades till this day in such a way that integrated Samba serves up under different hostname/domain and serves non-enrolled clients(win 10) too. With new deployment, 4.9.6, just adding things to just DNS -

[Freeipa-users] SSH with password fails - 7 (Authentication failure)

2022-01-16 Thread lejeczek via FreeIPA-users
Hi guys. This have puzzled my and left clueless. It's a fresh new deployment and still only single master. Very first & only user and I cannot 'ssh' with password - but krb ticket I can obtain and 'ssh' with it successfully. ssh logs: .. pam_sss(sshd:auth): received for user bs58: 7