Re: [Freeipa-users] Certificate system unavailable

2014-02-18 Thread Sigbjorn Lie
On Mon, February 17, 2014 17:59, Rob Crittenden wrote: Sigbjorn Lie wrote: On Mon, February 17, 2014 16:34, Rob Crittenden wrote: Sigbjorn Lie wrote: On Fri, February 14, 2014 17:18, Rob Crittenden wrote: Sigbjorn Lie wrote: On Fri, February 14, 2014 15:29, Rob

Re: [Freeipa-users] Issues creating trust with AD.

2014-02-18 Thread Sumit Bose
On Tue, Feb 18, 2014 at 01:11:38AM +0200, Genadi Postrilko wrote: Thank you for the help! I have preformed downgrade: yum downgrade samba4* [root@ipaserver1 ~]# rpm -qa | grep samb samba4-python-4.0.0-58.el6.rc4.x86_64 samba4-winbind-4.0.0-58.el6.rc4.x86_64

[Freeipa-users] A test repository with SSSD 1.11 for RHEL6

2014-02-18 Thread Jakub Hrozek
Hi, we are considering upgrading SSSD in RHEL6 to 1.11.x. With this upgrade, RHEL6 would receive many new features such as: * support for trusted AD domains in the same forest in the AD provider * DNS site discovery for the AD provider * DNS updates and DNS scavenging in the AD

Re: [Freeipa-users] ipa-client-install fails on replica because of kinit cannot contact any KDC

2014-02-18 Thread Shree
Rob I am giving it a fresh start and I notice similar issues. 1) I wasn't able to use the --setup-ca while running the ipa-replica-install on the replica. It stopped the install after the ntpd step see below. Done configuring NTP daemon (ntpd). A CA is already configured on this system. 2) So

Re: [Freeipa-users] Certificate system unavailable

2014-02-18 Thread Rob Crittenden
Sigbjorn Lie wrote: On what machine are you trying to use the ipa tool? Is it one of the masters, all of them, enrolled clients? It's the same error message when the ipa command is run directly on any of the masters. And it's the same error message if I run the ipa command on any of the

Re: [Freeipa-users] Installing FreeIPA 3.1 - 3.3 On RHEL

2014-02-18 Thread Rob Crittenden
John Stein wrote: Thank you for the fast response. Some point i would like to understand better: 1) I understand there is a Big dependencies issue, that's why i want to know if there is a repository that can satisfy those dependencies. No, the changes are too vast to make this worthwhile.

Re: [Freeipa-users] Installing FreeIPA 3.1 - 3.3 On RHEL

2014-02-18 Thread Alexander Bokovoy
On Tue, 18 Feb 2014, John Stein wrote: Thank you for the fast response. Some point i would like to understand better: 1) I understand there is a Big dependencies issue, that's why i want to know if there is a repository that can satisfy those dependencies. There is no repository for that.

Re: [Freeipa-users] Allow freeipa send password to user

2014-02-18 Thread Dmitri Pal
On 02/17/2014 10:51 PM, barry...@gmail.com wrote: Is it possible to set allow password to send to user after user request. I used one of the self password service pwm but it seem it is not compatible to retriveal of password using cert request / Answer and questions retrieval thks barry

Re: [Freeipa-users] Setting up samba with IPA

2014-02-18 Thread Steven Jones
This is what I'd like to do, Linux users have nfs with samba for windows users. From what I can read however to get smba to work with AD I have to alter kerberos which is set to IPA...so I dont understand how you have it working. Currently Im trying to get samba just to work with a password