Re: [Freeipa-users] ipa-replica-manage list fail on server 2

2014-07-08 Thread barrykfl
FYI.. 160: [04/Jul/2014:12:35:30 +0800] conn=936207 fd=73 slot=73 connection from 192.168.156.89 to 192.168.156.89 163: [04/Jul/2014:12:35:30 +0800] conn=936207 op=-1 fd=73 closed - B1 There is not abt binding but i unsure how to fix .. 2014-07-09 2:01 GMT+08:00 Rich Megginson

Re: [Freeipa-users] ipa-replica-manage list fail on server 2

2014-07-07 Thread Rich Megginson
On 07/04/2014 03:28 AM, barry...@gmail.com wrote: FOUND something strange that server 1 replicate to itself rather than server2 Server1 access log Wrong [04/Jul/2014:12:35:30 +0800] conn=936207 fd=73 slot=73 connection from 192.168.15.89( server1 ) to 192.168.15.89 (server1) Are you sure

Re: [Freeipa-users] ipa-replica-manage list fail on server 2

2014-07-04 Thread barrykfl
FOUND something strange that server 1 replicate to itself rather than server2 Server1 access log Wrong [04/Jul/2014:12:35:30 +0800] conn=936207 fd=73 slot=73 connection from 192.168.15.89( server1 ) to 192.168.15.89 (server1) Server 2 access log OK [04/Jul/2014:12:35:30 +0800] conn=936208

Re: [Freeipa-users] ipa-replica-manage list fail on server 2

2014-07-03 Thread Rob Crittenden
Please keep relies on the list. barry...@gmail.com wrote: I saw the error beloe and errpr log is it related ? 29/Jun/2014:02:00:58 +0800] slapd_ldap_sasl_interactive_bind - Error: could not perform interactive bind for id [] mech [GSSAPI]: LDAP error -2 (Local error) (SASL(-1): generic

Re: [Freeipa-users] ipa-replica-manage list fail on server 2

2014-07-03 Thread barrykfl
Yes they are running. Server 1 can syn to server2 but error at server 2 like this. 2014/7/3 下午10:14 於 Rob Crittenden rcrit...@redhat.com 寫道: Please keep relies on the list. barry...@gmail.com wrote: I saw the error beloe and errpr log is it related ? 29/Jun/2014:02:00:58 +0800]

Re: [Freeipa-users] ipa-replica-manage list fail on server 2

2014-07-03 Thread Rob Crittenden
barry...@gmail.com wrote: Yes they are running. Server 1 can syn to server2 but error at server 2 like this. How do you know server 1 is syncing with server 2? On server 1 I'd run: ipa-replica-manage list -v `hostname` This will show the replication status. And what does ipactl status show

Re: [Freeipa-users] ipa-replica-manage list fail on server 2

2014-07-03 Thread barrykfl
Just sure now one side flow is broken, if u update server1 , it 100% work server2 will upgrade. but if u update server2 there is chance non-syn e.g it create username in server1 with posfix grp ok but in server2 it only created posfix grp but no username /attribute it occur serveral times. I have

Re: [Freeipa-users] ipa-replica-manage list fail on server 2

2014-06-30 Thread Rob Crittenden
Barry wrote: Hi: Server 1 and Sever 2 is cluster master master orginally , but server 2 fail to connect server1 ,. ipa-replica-manage list shown Can't contact LDAP server But as server1 it is ok master server1 master server2 , It seem affect if update on server 1 then it syn to