Re: [Freeipa-users] certmonger question

2014-11-12 Thread Natxo Asenjo
hi, On Tue, Nov 11, 2014 at 7:14 PM, Nalin Dahyabhai na...@redhat.com wrote: On Tue, Nov 11, 2014 at 11:13:12AM -0500, Nalin Dahyabhai wrote: Since you mention that this seems to be specific to 32-bit boxes, I think I need to switch to that one to try to sort out what's happening here, since

[Freeipa-users] Unable to Login until Trust is Repaired

2014-11-12 Thread Jonathan Bradford
This is my first post on the IPA mailing list. Hey guys :) I've successfully walked through the IdM Red Hat document on Integrating with Active Directory Through Cross-Realm Kerberos Trusts using separate DNS domains. I've reached the part where you test the trust using SSH via PuTTY, and I have

Re: [Freeipa-users] Unable to Login until Trust is Repaired

2014-11-12 Thread Dmitri Pal
On 11/12/2014 08:44 AM, Jonathan Bradford wrote: This is my first post on the IPA mailing list. Hey guys :) I've successfully walked through the IdM Red Hat document on Integrating with Active Directory Through Cross-Realm Kerberos Trusts using separate DNS domains. I've reached the part where

Re: [Freeipa-users] FreeIPA Kerberos and Single-DES for OpenAFS

2014-11-12 Thread Dmitri Pal
On 11/12/2014 09:54 AM, Andreas Ladanyi wrote: Hi, I set up the 389 LDAP server to support des-cbc-crc enctype. I created a principal for OpenAFS. OpenAFS need des-cbc-crc:v4 (single-DES). I created the principal with: kadmin.local -x ipa-setup-override-restrictions The result is:

Re: [Freeipa-users] FreeIPA Kerberos and Single-DES for OpenAFS

2014-11-12 Thread Simo Sorce
On Wed, 12 Nov 2014 15:54:14 +0100 Andreas Ladanyi andreas.lada...@kit.edu wrote: Hi, I set up the 389 LDAP server to support des-cbc-crc enctype. I created a principal for OpenAFS. OpenAFS need des-cbc-crc:v4 (single-DES). I created the principal with: kadmin.local -x

Re: [Freeipa-users] FreeIPA Kerberos and Single-DES for OpenAFS

2014-11-12 Thread Petr Spacek
On 13.11.2014 02:17, Simo Sorce wrote: On Wed, 12 Nov 2014 15:54:14 +0100 Andreas Ladanyi andreas.lada...@kit.edu wrote: Hi, I set up the 389 LDAP server to support des-cbc-crc enctype. I created a principal for OpenAFS. OpenAFS need des-cbc-crc:v4 (single-DES). I created the principal