[Freeipa-users] What is the recommended procedure for upgrading clients and servers to F23?

2015-10-31 Thread Fujisan
Hi there, F23 is coming out very soon and I'm wondering what machine I should upgrade first, the spa clients or the ipa servers? In other words, can the ipa system work with ipa client upgraded to 4.2 and the servers still at 4.1.4? Or do I have to upgrade the servers first? And should I upgrade

Re: [Freeipa-users] Sync IPA and AD while using external CA

2015-10-31 Thread mitra dehghan
Dear Rob, Thanks for your response: > Yes but which cert did you provider, the root CA contoso.com or the subordinate CA local.dc? Actually I was using active directory's certificate with --cacert switch in ipa-replica-manage Thanks to info you gave me about NSS I changed the approach. first: usi