Re: [Freeipa-users] ipa sync agreement to AD DC is taking a very long time

2013-10-17 Thread Martin Kosek
t; >> And thanks for the link -- probably should watch that first LOL. >> >> -J. >> >> >> >> >> On Tue, Oct 15, 2013 at 4:01 PM, Alexander Bokovoy >> wrote: >>> >>> - Original Message - >>>> From: "

Re: [Freeipa-users] ipa sync agreement to AD DC is taking a very long time

2013-10-16 Thread Dmitri Pal
Tue, Oct 15, 2013 at 4:01 PM, Alexander Bokovoy > wrote: >> >> - Original Message - >>> From: "janice.psyop" >>> To: freeipa-users@redhat.com >>> Sent: Tuesday, October 15, 2013 6:51:42 PM >>> Subject: Re: [Freeipa-users] ip

Re: [Freeipa-users] ipa sync agreement to AD DC is taking a very long time

2013-10-15 Thread janice.psyop
o: freeipa-users@redhat.com >> Sent: Tuesday, October 15, 2013 6:51:42 PM >> Subject: Re: [Freeipa-users] ipa sync agreement to AD DC is taking a very >> long time >> >> Thanks for the replies. >> >> I checked this morning and it was still hung up on &

Re: [Freeipa-users] ipa sync agreement to AD DC is taking a very long time

2013-10-15 Thread Alexander Bokovoy
- Original Message - > From: "janice.psyop" > To: freeipa-users@redhat.com > Sent: Tuesday, October 15, 2013 6:51:42 PM > Subject: Re: [Freeipa-users] ipa sync agreement to AD DC is taking a very > long time > > Thanks for the replies. > > I

Re: [Freeipa-users] ipa sync agreement to AD DC is taking a very long time

2013-10-15 Thread Rich Megginson
On 10/15/2013 12:32 PM, janice.psyop wrote: Found out that ns-slapd was not running/was dead ("No such process not running, but pid file exists") -- discovered that when I tried to do the ldapmodify and got the "ldap_sasl_bind(SIMPLE): Can't contact LDAP server (-1)" error. Anyway, I started d

Re: [Freeipa-users] ipa sync agreement to AD DC is taking a very long time

2013-10-15 Thread janice.psyop
Found out that ns-slapd was not running/was dead ("No such process not running, but pid file exists") -- discovered that when I tried to do the ldapmodify and got the "ldap_sasl_bind(SIMPLE): Can't contact LDAP server (-1)" error. Anyway, I started dirsrv and did the ldapmodify with more verbosi

Re: [Freeipa-users] ipa sync agreement to AD DC is taking a very long time

2013-10-15 Thread Rich Megginson
On 10/15/2013 09:51 AM, janice.psyop wrote: Thanks for the replies. I checked this morning and it was still hung up on "Update in progess" so I killed it. @Alexander: Yes, I had already established a trust with our AD DC. I was doing step " 9.4.2. Creating Synchronization Agreements" (FreeIPA_

Re: [Freeipa-users] ipa sync agreement to AD DC is taking a very long time

2013-10-15 Thread janice.psyop
Thanks for the replies. I checked this morning and it was still hung up on "Update in progess" so I killed it. @Alexander: Yes, I had already established a trust with our AD DC. I was doing step " 9.4.2. Creating Synchronization Agreements" (FreeIPA_Guide/managing-sync-agmt.html)I've been fo

Re: [Freeipa-users] ipa sync agreement to AD DC is taking a very long time

2013-10-15 Thread Rich Megginson
On 10/15/2013 01:22 AM, Alexander Bokovoy wrote: On Mon, 14 Oct 2013, janice.psyop wrote: Hi, I've been setting up an IPA server (centos 6.4) with AD trust (2008R2 domain) following the FC18 freeipa guide. AD trusts is different from AD sync agreement. What you describe below is use of passs

Re: [Freeipa-users] ipa sync agreement to AD DC is taking a very long time

2013-10-15 Thread Alexander Bokovoy
On Mon, 14 Oct 2013, janice.psyop wrote: Hi, I've been setting up an IPA server (centos 6.4) with AD trust (2008R2 domain) following the FC18 freeipa guide. AD trusts is different from AD sync agreement. What you describe below is use of passsync/winsync (AD sync), not AD trusts. Just to make

Re: [Freeipa-users] ipa sync agreement to AD DC is taking a very long time

2013-10-14 Thread Nathan Kinder
On 10/14/2013 08:26 PM, janice.psyop wrote: Hi, I've been setting up an IPA server (centos 6.4) with AD trust (2008R2 domain) following the FC18 freeipa guide. Everything has gone smoothly until I ran the ipa-replica-manage connect command to the AD DC and it seems to be running (no errors o

[Freeipa-users] ipa sync agreement to AD DC is taking a very long time

2013-10-14 Thread janice.psyop
Hi, I've been setting up an IPA server (centos 6.4) with AD trust (2008R2 domain) following the FC18 freeipa guide. Everything has gone smoothly until I ran the ipa-replica-manage connect command to the AD DC and it seems to be running (no errors on std out and ps says it is still running), but i