[Freeipa-users] ipa: ERROR: non-public: TypeError -- ipa trust-add crash

2015-04-20 Thread g . fer . ordas
Hi This is for freeipa-server-4.1.4-1.el7.centos.x86_64 When Running: ipa trust-add --type=ad ad.domain.com --admin --password ipa: ERROR: an internal error has occurred Some more info at : /var/log/httpd/error_log num_setup=2, max_setup=0, param_total=0, this_param=0, max_param=0, da

Re: [Freeipa-users] ipa: ERROR: AD DC was unable to reach any IPA domain controller --- AD domain controller complains about communication sequence.

2015-04-15 Thread g . fer . ordas
Hi Alexander I do trust the diagnostics and I thank you so much for that explanation as I know now now a bit better what to expect or for the less what is the sequence it follows. This does not seem to be a port issue (below windows): PORT STATE SERVICE 53/tcpopen domain 80/tcp

[Freeipa-users] ipa: ERROR: AD DC was unable to reach any IPA domain controller --- AD domain controller complains about communication sequence.

2015-04-14 Thread g . fer . ordas
Hi Dealing with AD --> Cert Trust I am reaching the following step: ipa trust-add ad.company.com --admin --password Active Directory domain administrator's password: ipa: ERROR: AD DC was unable to reach any IPA domain controller. Most likely it is a DNS or firewall issue Reaching this

[Freeipa-users] AD --> IPA trust --::-- ipa: ERROR: Insufficient access: CIFS server denied your credentials

2015-04-10 Thread g . fer . ordas
Guys Anyway of simply skipping the CIFS mount credentials bit? I do not actually need the AD CIFS at this point. ipa trust-add --type=ad ad.domain.com --admin Admin --password Active Directory domain administrator's password: ipa: ERROR: Insufficient access: CIFS server denied your credential

Re: [Freeipa-users] IPA and geographically distributed masters

2015-04-01 Thread g . fer . ordas
Hi if you got the NTPs in sync and using the same timzeone on both it should be ok thanks On 2015-04-01 23:41, Steven Jones wrote: Hi, Would IPA have issues if one master is one one side of the Pacific (New Zealand) and another in the USA? regards Steven J -- Manage your subscription

Re: [Freeipa-users] Ubuntu sssd client -- FreeIPA Server fed from AD

2015-03-29 Thread g . fer . ordas
Hey Guys Not sure if I am missing any bit but this was the thing in the end: http://generations.menteyarte.org/archives/195-freeipa-server-and-SSSD-on-Ubuntu.html I managed to have it working and I have documented all those nasty bits which might save people's time. The whole weekend gon

[Freeipa-users] Ubuntu sssd client -- FreeIPA Server fed from AD

2015-03-25 Thread g . fer . ordas
Hi I am setting up a plain and simple sssd service against my FreeIPA Server. The FreeIPA Server is a Centos 7.1 box with IPA version 4.1 and the client box is ubuntu: Ubuntu 12.04.5 LTS The Users and Credentials are being Synched out of an AD Server (the passwords happened to be transferred

Re: [Freeipa-users] AD --> FreeIPA Password Sync --- Peer reports incompatible or unsupported protocol

2015-03-13 Thread g . fer . ordas
Thanks to everyone for the replies. The installed version for the passsync is 1.1.6 and using the latest I got in RPMs form centos7 so the following: 89-ds-base-1.3.1.6-26.el7_0.x86_64 389-ds-base-libs-1.3.1.6-26.el7_0.x86_64 sssd-ipa-1.11.2-68.el7_0.6.x86_64 ipa-python-3.3.3-28.0.1.el7.cento

[Freeipa-users] AD --> FreeIPA Password Sync --- Peer reports incompatible or unsupported protocol

2015-03-13 Thread g . fer . ordas
Hi I am going forward with a Password Sync AD (window 2013) FreeIPA ipa-server-3.3.3-28.0.1.el7 on a Centos7 Box. I got the Password Sync Tool installed in the Windows2013 box and I have created a user with it's related password as I am trying to test the password changes... Looking a