Re: [Freeipa-users] Sudo issues with FreeIPA

2013-12-17 Thread Dimitar Georgievski
Thanks Dmitri. Those settings for ldap in sssd.conf fixed the issue. Dimitar On Tue, Dec 17, 2013 at 6:47 PM, Dmitri Pal wrote: > On 12/17/2013 06:34 PM, Dimitar Georgievski wrote: > > Hi, > > I am running FreeIPA 3.3.3 on CentOS 6.5. Everything works fine except > that I have problem enfor

Re: [Freeipa-users] freeipa client wont install on host where a ipa server guest is already installed.

2013-12-17 Thread Jan Pazdziora
On Tue, Dec 17, 2013 at 08:23:36PM -0500, Joshua Nager wrote: > > I am running freeipa as a guest KVM virtual machine. I have found myself > running into a problem when trying to install ipa-client on the host which > the guest resides. > > Upon trying to install the ipa-client I am given the m

[Freeipa-users] freeipa client wont install on host where a ipa server guest is already installed.

2013-12-17 Thread Joshua Nager
Greetings, I have a question on a Free-ipa install. I am running freeipa as a guest KVM virtual machine. I have found myself running into a problem when trying to install ipa-client on the host which the guest resides. Upon trying to install the ipa-client I am given the msg that I must

[Freeipa-users] Question: re replica install

2013-12-17 Thread Les Stott
Hi All, (RHEL 6.4, FreeIPA 3.0.0-37) Say I want to install a replica server in a restricted network, but I don't want to enable http management on the replica. I am pretty sure the following is true, but ask the question just to be sure Can a replica work (for authentication and replicatio

Re: [Freeipa-users] Sudo issues with FreeIPA

2013-12-17 Thread Dmitri Pal
On 12/17/2013 06:34 PM, Dimitar Georgievski wrote: > Hi, > > I am running FreeIPA 3.3.3 on CentOS 6.5. Everything works fine > except that I have problem enforcing sudo policies on the hosts that > are part of the managed domain. > > When trying to run the following simple command as a user manag

[Freeipa-users] Sudo issues with FreeIPA

2013-12-17 Thread Dimitar Georgievski
Hi, I am running FreeIPA 3.3.3 on CentOS 6.5. Everything works fine except that I have problem enforcing sudo policies on the hosts that are part of the managed domain. When trying to run the following simple command as a user managed by FreeIPA I got the following response: *> sudo /usr/bin/v

Re: [Freeipa-users] WARNING: Do not upgrade FreeIPA deployments to Fedora 20 final (yet)

2013-12-17 Thread Alexander Bokovoy
On Tue, 17 Dec 2013, KodaK wrote: I took a look at the bugs page and I didn't see it mentioned, but I'm asking anyway: is anyone aware of any client-side issues on fedora IRT IPA? We have some fedora workstations that auth against IPA in RHEL 6. We are unaware of any problems with Fedora clien

Re: [Freeipa-users] WARNING: Do not upgrade FreeIPA deployments to Fedora 20 final (yet)

2013-12-17 Thread KodaK
I took a look at the bugs page and I didn't see it mentioned, but I'm asking anyway: is anyone aware of any client-side issues on fedora IRT IPA? We have some fedora workstations that auth against IPA in RHEL 6. On Tue, Dec 17, 2013 at 3:14 AM, Alexander Bokovoy wrote: > Greetings! > > As many

Re: [Freeipa-users] Replica master in strange state -- how to resolve?

2013-12-17 Thread Bret Wortman
On 12/17/2013 09:15 AM, Rob Crittenden wrote: Bret Wortman wrote: On 12/16/2013 10:37 PM, Rob Crittenden wrote: Dmitri Pal wrote: On 12/16/2013 10:40 AM, Bret Wortman wrote: I had a replica that was completely failing to respond to its clients, so I removed it by first running "ipa-replica

Re: [Freeipa-users] Replica master in strange state -- how to resolve?

2013-12-17 Thread Rob Crittenden
Bret Wortman wrote: On 12/16/2013 10:37 PM, Rob Crittenden wrote: Dmitri Pal wrote: On 12/16/2013 10:40 AM, Bret Wortman wrote: I had a replica that was completely failing to respond to its clients, so I removed it by first running "ipa-replica-manage del" on the replica master, then "ipa-ser

Re: [Freeipa-users] Replica master in strange state -- how to resolve?

2013-12-17 Thread Bret Wortman
On 12/16/2013 10:37 PM, Rob Crittenden wrote: Dmitri Pal wrote: On 12/16/2013 10:40 AM, Bret Wortman wrote: I had a replica that was completely failing to respond to its clients, so I removed it by first running "ipa-replica-manage del" on the replica master, then "ipa-server-install -U --unin

[Freeipa-users] WARNING: Do not upgrade FreeIPA deployments to Fedora 20 final (yet)

2013-12-17 Thread Alexander Bokovoy
Greetings! As many of you are aware, Fedora Project releases Fedora 20 today, Tuesday, December 17th. This post serves as a warning against upgrading your FreeIPA deployments to Fedora 20 using release images. Please check Fedora 20 Common Bugs page https://fedoraproject.org/wiki/Common_F20_bugs