Re: [Freeipa-users] Managing Sudo through FreeIPA

2012-12-11 Thread James Hogarth
Hi, caching capabilities were not optimal in the tech preview, but it was fully functional (or at least should be, I don't think anyone really tried it in production), unless sssd is configured with multiple domains. I looked at the 6.3 technical notes for sudo, sssd and ipa but couldn't

Re: [Freeipa-users] ipa-replica-install fails

2012-12-11 Thread Dmitri Pal
On 12/11/2012 10:53 AM, Bret Wortman wrote: My replica install fails to create a DS instance: : [2/30]: creating directory server instance ipa : CRITICAL failed to create ds instance Command '/usr/sbin/setup-ds.pl http://setup-ds.pl --silent --logfile - -f /tmp/tmpp80GFc' returned

Re: [Freeipa-users] Managing Sudo through FreeIPA

2012-12-11 Thread Jakub Hrozek
On Tue, Dec 11, 2012 at 11:25:57AM -0500, Dmitri Pal wrote: The native integration in SSSD was a tech preview in 6.3 and was pretty much broken. It wasn't a TP in 6.3 because the sudo 1.8 package wasn't in 6.3 all. It was rewritten after F-17, because its cache update mechanism was extremely

Re: [Freeipa-users] ipa-replica-install fails

2012-12-11 Thread Martin Kosek
On 12/11/2012 05:25 PM, Dmitri Pal wrote: On 12/11/2012 10:53 AM, Bret Wortman wrote: My replica install fails to create a DS instance: : [2/30]: creating directory server instance ipa : CRITICAL failed to create ds instance Command '/usr/sbin/setup-ds.pl http://setup-ds.pl --silent

Re: [Freeipa-users] ipa-replica-install fails

2012-12-11 Thread Bret Wortman
I'm working through them and may simply abandon the idea of automating the replica install. On Tue, Dec 11, 2012 at 2:09 PM, Dmitri Pal d...@redhat.com wrote: On 12/11/2012 12:09 PM, Bret Wortman wrote: On Tue, Dec 11, 2012 at 11:25 AM, Dmitri Pal d...@redhat.com wrote: On 12/11/2012

Re: [Freeipa-users] Announcing FreeIPA v3.1.0 Release

2012-12-11 Thread Nalin Dahyabhai
On Tue, Dec 11, 2012 at 01:04:37PM -0500, Bret Wortman wrote: This appears to require dirsrv-1.3, which I assume is part of 389-base-devel. I don't see where 1.3 has been made available yet, or am I missing something? Hmm. I'm seeing packages for a 1.3.0-0.1.a1 in Fedora 18, and after a

Re: [Freeipa-users] Announcing FreeIPA v3.1.0 Release

2012-12-11 Thread Rich Megginson
On 12/11/2012 12:21 PM, Nalin Dahyabhai wrote: On Tue, Dec 11, 2012 at 01:04:37PM -0500, Bret Wortman wrote: This appears to require dirsrv-1.3, which I assume is part of 389-base-devel. I don't see where 1.3 has been made available yet, or am I missing something? Hmm. I'm seeing packages for

Re: [Freeipa-users] ipa-replica-install fails

2012-12-11 Thread Steven Jones
Hi, I had this recently and it drove me nuts...might want to take more knowledgeable ppls than me advice on the process below to make sure its sane/OK. 8--- [21/30]: setting up initial replication Starting replication, please wait until this has completed. [vuwunicoipam002.ods.vuw.ac.nz]

[Freeipa-users] Announcing FreeIPA v3.0.2 Release

2012-12-11 Thread Rob Crittenden
The FreeIPA team is proud to announce version FreeIPA v3.0.2. It can be downloaded from http://www.freeipa.org/page/Downloads. == Highlights in 3.0.2 == * WebUI: Change of default value of type of new group back to POSIX. * Lookup the user SID in external group as well. * Include sssd-managed

Re: [Freeipa-users] Installing freeipa.

2012-12-11 Thread Steven Jones
Hi, 1) In /etc/sysconfig/network have the fully qualified domain name of the host, and not just its short name. 2) In hosts file have the IP, then FQDN then short name on a new line. 3) Turn NetworkManager off and network on 4) reboot regards Steven Jones Technical Specialist - Linux