Re: [Freeipa-users] IPA Startup issues

2011-05-17 Thread Sigbjorn Lie
On 05/16/2011 04:56 PM, Rich Megginson wrote: On 05/16/2011 08:43 AM, Sigbjorn Lie wrote: On 05/16/2011 03:52 PM, Simo Sorce wrote: On Sat, 2011-05-14 at 16:46 +0200, Sigbjorn Lie wrote: I've noticed that if the machine running IPA is very busy at startup, the IPA services will not be online

Re: [Freeipa-users] FreeIPA for Linux desktop deployment

2011-05-17 Thread nasir nasir
Sorry to answer my own post! After trying out all the permutations and combinations of automountkey-add/del command, I figured out the following entry and it works for all the PRE CREATED home folders across all the machines except NFS server, /etc/auto.home:*      

Re: [Freeipa-users] FreeIPA for Linux desktop deployment

2011-05-17 Thread Adam Young
On 05/17/2011 02:03 AM, nasir nasir wrote: Further to my previous mail, let us try to isolate it even more by comparing the login attempts to the NFS server(hugayat.cohort.org) and another IPA client(rhel.cohort.org) This is the relevant /var/log/message in the two cases *1. ssh -l nasir

Re: [Freeipa-users] IPA Startup issues

2011-05-17 Thread Rich Megginson
On 05/17/2011 06:40 AM, Sigbjorn Lie wrote: On 05/16/2011 04:56 PM, Rich Megginson wrote: On 05/16/2011 08:43 AM, Sigbjorn Lie wrote: On 05/16/2011 03:52 PM, Simo Sorce wrote: On Sat, 2011-05-14 at 16:46 +0200, Sigbjorn Lie wrote: I've noticed that if the machine running IPA is very busy at

Re: [Freeipa-users] RHEL client to IPA

2011-05-17 Thread Steven Jones
So what should the command be? regards -Original Message- From: freeipa-users-boun...@redhat.com [mailto:freeipa-users-boun...@redhat.com] On Behalf Of Jakub Hrozek Sent: Friday, 13 May 2011 9:11 p.m. To: freeipa-users@redhat.com Subject: Re: [Freeipa-users] RHEL client to IPA On

Re: [Freeipa-users] RHEL client to IPA

2011-05-17 Thread Rob Crittenden
Steven Jones wrote: So what should the command be? # kinit admin # ipa-getkeytab -k /tmp/vuwnicologint2.keytab -p host/vuwunicologint2.unix.vuw.ac.nz -s vuwunicoipamt01.unix.vuw.ac.nz rob regards -Original Message- From: freeipa-users-boun...@redhat.com

Re: [Freeipa-users] How to reset the admin password

2011-05-17 Thread Rob Crittenden
Steven Jones wrote: ? $ LDAPTLS_CACERT=/etc/ipa/ca.crt ldappasswd -ZZ -D 'cn=directory manager' -W -S uid=admin,cn=users,cn=accounts,dc=example,dc=com You'll first be prompted for the new admin password twice, then for the Directory Manager password. rob

Re: [Freeipa-users] RHEL client to IPA

2011-05-17 Thread Steven Jones
Im getting, SASL bind failed! 8 Steven Jones wrote: So what should the command be? # kinit admin # ipa-getkeytab -k /tmp/vuwnicologint2.keytab -p host/vuwunicologint2.unix.vuw.ac.nz -s vuwunicoipamt01.unix.vuw.ac.nz ___ Freeipa-users mailing

Re: [Freeipa-users] RHEL client to IPA

2011-05-17 Thread JR Aquino
Is ns-ldap / kdc running on vuwunicoipamt01.unix.vuw.ac.nz? service dirsrv status service krb5kdc status And are you running the command on vuwunicoipamt01.unix.vuw.ac.nz? On May 17, 2011, at 8:23 PM, Steven Jones steven.jo...@vuw.ac.nzmailto:steven.jo...@vuw.ac.nz wrote: Im getting, SASL