Re: [Freeipa-users] Install FreeIPA 4 on ubuntu

2014-08-21 Thread Lukas Slebodnik
On (20/08/14 20:27), Chris Whittle wrote: Is there instructions anywhere? My FreeIPA 3 on CentOS died so I'm starting over You can try FreeIPA 3.3. on CentOS 7 bash-4.2# yum info ipa-server Loaded plugins: fastestmirror Loading mirror speeds from cached hostfile * base: mirror.raystedman.net *

Re: [Freeipa-users] ntp and srv records

2014-08-21 Thread Petr Spacek
On 21.8.2014 06:17, Les Stott wrote: Hi All, Am about to start rolling out clinet installs on rhel6 hosts with dns autodiscovery. Enviroment: rhel6, ipa-3.0.0-37.el6. I already have setup SRV records for Kerberos and ldap etc. Are the following ntp records as SRV records necessary also?

Re: [Freeipa-users] ntp and srv records

2014-08-21 Thread Les Stott
We have ntp setup on two servers and configured normally via /etc/ntp* etc. All clients and servers reference the same ntp servers, and all would be on the same time. This doesn't require ntp SRV records. So I personally don't thing ntp srv records are necessary and can't see an issue. But

Re: [Freeipa-users] Ldapsearch with a trailing space

2014-08-21 Thread Ludwig Krispenz
On 08/21/2014 02:32 AM, Rich Megginson wrote: On 08/20/2014 05:28 PM, William wrote: How did you manage to add an attribute value with a trailing space? Excellent question: Someone else in my workplace managed to stuff this one up, so that a users objectClass has a trailing space, thus is

Re: [Freeipa-users] ipa-client-install via Kickstart in RHEL7

2014-08-21 Thread Martin Kosek
On 08/20/2014 05:24 PM, Rich Megginson wrote: On 08/20/2014 09:18 AM, Baird, Josh wrote: Hi, We are attempting to run ipa-client-install in the %post section of a Kickstart in order to join the host to an IPA domain (3.3/RHEL7 IdM). We are using something like:

Re: [Freeipa-users] ipa 2 client connecting to ipa 3 server

2014-08-21 Thread Martin Kosek
On 08/20/2014 09:49 PM, Dmitri Pal wrote: On 08/20/2014 09:43 PM, Rob Crittenden wrote: Walid wrote: Thanks Rob, we have native python2.4, and anaconda python 2.7, so i guess if anything needs python 2.6 or greater it would not be an issue. I am just wondering if there are people using the

Re: [Freeipa-users] dirsrv access log redirect

2014-08-21 Thread Rob Crittenden
barry...@gmail.com wrote: Hi: I m not avaibable to test the pipe setting as the servers are live now and need restrt..can i simply config rsyslog server using /var/log/dirsrv/slapf-abc.com/access http://slapf-abc.com/access to redirect ot another rsyslog server ? Please keep responses on

Re: [Freeipa-users] ipa-client-install via Kickstart in RHEL7

2014-08-21 Thread Rich Megginson
On 08/21/2014 05:55 AM, Martin Kosek wrote: On 08/20/2014 05:24 PM, Rich Megginson wrote: On 08/20/2014 09:18 AM, Baird, Josh wrote: Hi, We are attempting to run ipa-client-install in the %post section of a Kickstart in order to join the host to an IPA domain (3.3/RHEL7 IdM). We are using

Re: [Freeipa-users] dirsrv access log redirect

2014-08-21 Thread Rich Megginson
On 08/21/2014 06:59 AM, Rob Crittenden wrote: barry...@gmail.com wrote: Hi: I m not avaibable to test the pipe setting as the servers are live now and need restrt..can i simply config rsyslog server using /var/log/dirsrv/slapf-abc.com/access http://slapf-abc.com/access to redirect ot another

Re: [Freeipa-users] dirsrv access log redirect

2014-08-21 Thread Mike LoSapio
You can use this. http://www.rsyslog.com/doc/imfile.html On 8/21/14, 9:54 AM, Rich Megginson rmegg...@redhat.com wrote: On 08/21/2014 06:59 AM, Rob Crittenden wrote: barry...@gmail.com wrote: Hi: I m not avaibable to test the pipe setting as the servers are live now and need

Re: [Freeipa-users] ntp and srv records

2014-08-21 Thread Lucas Yamanishi
On 08/21/2014 12:17 AM, Les Stott wrote: Hi All, Am about to start rolling out clinet installs on rhel6 hosts with dns autodiscovery. Enviroment: rhel6, ipa-3.0.0-37.el6. I already have setup SRV records for Kerberos and ldap etc. Are the following ntp records as SRV

[Freeipa-users] Permission for root running cron task as a different user

2014-08-21 Thread William Muriithi
Evening, Came across a problem where a cron job I had setup last night seemed not to run. On further investigation, I noticed FreeIPA must be pushing a policy that block cron task that adopt a different user than the one its set under. I am certain its FreeIPA related as I have a system that's

Re: [Freeipa-users] Permission for root running cron task as a different user

2014-08-21 Thread Rob Crittenden
William Muriithi wrote: Evening, Came across a problem where a cron job I had setup last night seemed not to run. On further investigation, I noticed FreeIPA must be pushing a policy that block cron task that adopt a different user than the one its set under. I am certain its FreeIPA