Re: [Freeipa-users] Host certificate issue problem

2013-07-19 Thread Rivet, Matt
When I check the host certificate I see a ca-error saying it cannot find a suitable key. # ipa-getcert list Number of certificates and requests being tracked: 1. Request ID '20130719035440': status: CA_UNCONFIGURED ca-error: Error setting up ccache for local host service using default

Re: [Freeipa-users] freeipa-client on Debian Wheezy

2013-07-19 Thread Martin Kosek
On 07/19/2013 02:59 AM, Alexandre Ellert wrote: Hi, I have these 3 errors/warnings message when I join a Debian client to a RHEL 6.4 server (ipa-server-3.0.0-26.el6_4.4.x86_64): = certmonger failed to stop: [Errno 2] No such file or directory: '/var/run/ipa/services.list' There is no

Re: [Freeipa-users] freeipa-client on Debian Wheezy

2013-07-19 Thread Alexandre Ellert
Le 19 juil. 2013 à 10:20, Martin Kosek mko...@redhat.com a écrit : On 07/19/2013 02:59 AM, Alexandre Ellert wrote: Hi, I have these 3 errors/warnings message when I join a Debian client to a RHEL 6.4 server (ipa-server-3.0.0-26.el6_4.4.x86_64): = certmonger failed to stop: [Errno 2] No

Re: [Freeipa-users] freeipa-client on Debian Wheezy

2013-07-19 Thread Martin Kosek
On 07/19/2013 03:28 PM, Alexandre Ellert wrote: Le 19 juil. 2013 à 10:20, Martin Kosek mko...@redhat.com a écrit : On 07/19/2013 02:59 AM, Alexandre Ellert wrote: Hi, I have these 3 errors/warnings message when I join a Debian client to a RHEL 6.4 server

Re: [Freeipa-users] freeipa-client on Debian Wheezy

2013-07-19 Thread Alexandre Ellert
Le 19 juil. 2013 à 16:24, Martin Kosek mko...@redhat.com a écrit : On 07/19/2013 03:28 PM, Alexandre Ellert wrote: Le 19 juil. 2013 à 10:20, Martin Kosek mko...@redhat.com a écrit : On 07/19/2013 02:59 AM, Alexandre Ellert wrote: Hi, I have these 3 errors/warnings message when I join

Re: [Freeipa-users] F18 - F19 upgrade

2013-07-19 Thread Ade Lee
Ian, Sorry for the late response. Just saw this email. I'm surprised that you were able to update your machine to F19. We explicitly put in spec file logic to do a pre-trans check to see if you had dogtag 9 system instances before updating to f19. This was to prevent people from getting into

Re: [Freeipa-users] freeipa-client on Debian Wheezy

2013-07-19 Thread Martin Kosek
Thanks, this should help. Maybe the IPA just tries to close the connection twice _after_ keys were uploaded to the server. Anyway, what version of IPA software is the Debian package based on? I cannot find line self._conn.close() in ipalib/rpc.py in any of our active branches. Martin On

Re: [Freeipa-users] freeipa-client on Debian Wheezy

2013-07-19 Thread Alexandre Ellert
Here is the traceback : Adding SSH public key from /etc/ssh/ssh_host_rsa_key.pub Adding SSH public key from /etc/ssh/ssh_host_ecdsa_key.pub Adding SSH public key from /etc/ssh/ssh_host_dsa_key.pub Forwarding 'host_mod' to server u'https://inf-ipa.numeezy.fr/ipa/xml' host_mod: KerbTransport

Re: [Freeipa-users] freeipa-client on Debian Wheezy

2013-07-19 Thread Alexandre Ellert
Sorry, mistake from me. I remove all patch from RHEL and just keep 0053-Cookie-Expires-date-should-be-locale-insensitive.patch. Everything seems fine now. I'm going to test. Thanks for you help Le 19 juil. 2013 à 17:53, Alexandre Ellert aell...@numeezy.com a écrit : It's based on 3.0.2 with