Re: [Freeipa-users] authenticate samba 3 or 4 with freeipa: building ipasam.so on Ubuntu

2015-01-20 Thread Alexander Bokovoy
On Wed, 14 Jan 2015, Raoul Becke wrote: Alexander Bokovoy abokovoy@... writes: On Fri, 28 Mar 2014, Jason Woods wrote: Hi (Apologies - resending to the list - I'm so used to the Reply-To already set but it appears not to be here my bad.) On 28 Mar 2014, at 11:32, Petr Spacek pspacek@...

Re: [Freeipa-users] Having trouble running FreeIPA with SRV records on externally managed DNS

2015-01-20 Thread dbischof
Rob, On Mon, 19 Jan 2015, rob.har...@stfc.ac.uk wrote: I have successfully set up a test FreeIPA server and run it for a while, but the time has come to move towards a production service. I am currently running ipa-server version 3.0.0-25 on Scientific Linux 6.4 (if you don't know it,

Re: [Freeipa-users] Having trouble running FreeIPA with SRV records on externally managed DNS

2015-01-20 Thread Martin Basti
On 20/01/15 16:58, rob.har...@stfc.ac.uk wrote: Daniel wrote: ; kerberos realm _kerberos.my.domain. IN TXT my.domain. this looks odd to me, our central DNS TXT record zone entry looks like --- _kerberos 86400 IN TXTMY.DOMAIN --- where MY.DOMAIN is my Kerberos realm (usually the

Re: [Freeipa-users] Having trouble running FreeIPA with SRV records on externally managed DNS

2015-01-20 Thread rob.harper
Martin wrote: remove the trailing dot in TXT record, it could cause problems. OK. We'll try that too. Many thanks for your input. Rob -- Manage your subscription for the Freeipa-users mailing list: https://www.redhat.com/mailman/listinfo/freeipa-users Go To http://freeipa.org for more info

Re: [Freeipa-users] Having trouble running FreeIPA with SRV records on externally managed DNS

2015-01-20 Thread rob.harper
Daniel wrote: ; kerberos realm _kerberos.my.domain. IN TXT my.domain. this looks odd to me, our central DNS TXT record zone entry looks like --- _kerberos 86400 IN TXTMY.DOMAIN --- where MY.DOMAIN is my Kerberos realm (usually the domain name in capital letters). If

Re: [Freeipa-users] Having trouble running FreeIPA with SRV records on externally managed DNS

2015-01-20 Thread rob.harper
Hi Petr, Thanks for the reply. I wrote: snip I have been trying to set up SRV records for the FreeIPA server by providing the autogenerated zone file to our DNS manager, who has incorporated the configuration. When we deployed these changes, I used dig to confirm that SRV queries were

Re: [Freeipa-users] migrate-ds aborts

2015-01-20 Thread Martin Kosek
On 01/20/2015 04:49 PM, Quayle, Bill wrote: ... Hm, this is definitely not how the migrate-ds is supposed work :-/ I wish we can find the problem to avoid such difficulties for other users. As this is an evaluation setup, I can tear-down and rebuild to try to capture more data, if you want.

[Freeipa-users] Automount and home directory creation

2015-01-20 Thread Baird, Josh
Hi, I'm considering migrating to automounted home directories (via NFS), but would like to avoid having to manually create/provision the home directories on the NFS server. This [1] blog covers the very topic, but I'm not sure that any progress was ever made. Does anyone have any ideas or

Re: [Freeipa-users] Automount and home directory creation

2015-01-20 Thread Dmitri Pal
On 01/20/2015 05:40 PM, Baird, Josh wrote: Hi, I'm considering migrating to automounted home directories (via NFS), but would like to avoid having to manually create/provision the home directories on the NFS server. This [1] blog covers the very topic, but I'm not sure that any progress was

[Freeipa-users] IPA with OTP

2015-01-20 Thread Steven Jones
Hi, Any docs for RHEL7.1 for his? regards Steven -- Manage your subscription for the Freeipa-users mailing list: https://www.redhat.com/mailman/listinfo/freeipa-users Go To http://freeipa.org for more info on the project

Re: [Freeipa-users] IPA with OTP

2015-01-20 Thread Dmitri Pal
On 01/20/2015 06:06 PM, Steven Jones wrote: Hi, I am getting re-directed to, http://www.freeipa.org/page/V4/OTP This is the same thing? Yes. The page got renamed some time ago but my browser history keeps the old one. Sorry for confusion. regards Steven J

Re: [Freeipa-users] migrate-ds aborts

2015-01-20 Thread Rob Crittenden
Quayle, Bill wrote: We are making progress. ... The traceback of where the NetworkError is raised should be added to /var/log/httpd/error_log. So we have successfully migrated the users and groups. I can't seem to find any pointers on migrating netgroups and automount maps. Is this done

Re: [Freeipa-users] migrate-ds aborts

2015-01-20 Thread Quayle, Bill
We are making progress. -Original Message- From: Martin Kosek [mailto:mko...@redhat.com] Sent: Monday, January 19, 2015 2:52 AM To: Quayle, Bill; Ludwig Krispenz Cc: 'freeipa-users@redhat.com' Subject: Re: [Freeipa-users] migrate-ds aborts On 01/16/2015 08:21 PM, Quayle, Bill