[Freeipa-users] How to wreck your IPA environment

2018-11-06 Thread Chris Evich via FreeIPA-users
Hey all, About a year ago I did a really, really stupid thing. I updated IPA on one CentOS 7 host, then before being really sure things were working, I did the replica. Turned out the first upgrade only 'mostly' worked[*], meaning both hosts are now partially wrecked :S The good news is, DNS

[Freeipa-users] Re: How to wreck your IPA environment

2018-11-06 Thread Chris Evich via FreeIPA-users
...uggg, crap, tried replying twice and hyperkitty seems to just eat all my text... ___ FreeIPA-users mailing list -- freeipa-users@lists.fedorahosted.org To unsubscribe send an email to freeipa-users-le...@lists.fedorahosted.org Fedora Code of Conduct

[Freeipa-users] Re: How to wreck your IPA environment

2018-11-06 Thread Chris Evich via FreeIPA-users
...oh, it says "Your reply has been sent, and is being processed'...maybe that means it will eventually show up. I guess I'll wait :S ___ FreeIPA-users mailing list -- freeipa-users@lists.fedorahosted.org To unsubscribe send an email to freeipa-users-le

[Freeipa-users] Re: How to wreck your IPA environment

2018-11-06 Thread Chris Evich via FreeIPA-users
DNS and kerberos seem to be working fine (and have been for a long while). All `ipa` commands fail: ``` # kinit admin Password for admin@$REALM: # ipactl status Directory Service: RUNNING krb5kdc Service: RUNNING kadmin Service: RUNNING named Service: RUNNING httpd Service: RUNNING ipa-custodi