Re: [Freeipa-users] Windows Clients can´t access linux services using kerberos

2017-03-15 Thread Carlos Raúl Laguna
and i can access to any linux host enrolled in IPA with my windows credentials, the sso work just fine from any linux host any idea what i am missing ? Thanks in advance 2017-03-15 3:18 GMT-04:00 Carlos Raúl Laguna : > Hello everyone I need some help with this I have set up an IPA 4.4.3 >

[Freeipa-users] Windows Clients can´t access linux services using kerberos

2017-03-15 Thread Carlos Raúl Laguna
Hello everyone I need some help with this I have set up an IPA 4.4.3 server and I have established a forest trust relationship with Active Directory, everything looks good, after following this guide http://www.freeipa.org/index. Php? Title = Squid_Integration_with_FreeIPA_using_Single_Sign_On & re

[Freeipa-users] Unable to add attributes to default user schema

2016-12-26 Thread Carlos Raúl Laguna
Hello everyone, I am trying to add a new attribute ¨mailQuota¨ to the default user schema, so far i add the objectclass mailrecipient to the default user objectclasses which contain this specific atribute but so far i only capable to add the attribute manually with user-mod --addattr=mailQuota=102

Re: [Freeipa-users] IPA-AD Trust unable to resolve child domain

2016-10-20 Thread Carlos Raúl Laguna
Thanks for the clarification. Regards 2016-10-20 14:23 GMT-04:00 Alexander Bokovoy : > On to, 20 loka 2016, Carlos Raúl Laguna wrote: > >> Hi Alexander, >> I do belive is a DNS problem, the command failing are >> >> host -t srv _ldap._tcp.ad_domain >> or >

Re: [Freeipa-users] IPA-AD Trust unable to resolve child domain

2016-10-20 Thread Carlos Raúl Laguna
n on IPA and it work as expected, i will setup dnssec on the windows side and enable dns validation once more on IPA to see if can get the same outcome. Thanks for you answer 2016-10-20 10:10 GMT-04:00 Alexander Bokovoy : > On to, 20 loka 2016, Carlos Raúl Laguna wrote: > >> Hello

[Freeipa-users] IPA-AD Trust unable to resolve child domain

2016-10-20 Thread Carlos Raúl Laguna
Hello everyone, Both server are fresh install 2008r2 and fedora 24 server freeipa 4.3.2 as documentation explain in http://www.freeipa.org/page/Active_Directory_trust_setup#If_AD_is_subdomain_of_IPA however the server is unable to resolve any record from my child domain, i found this bug https://

Re: [Freeipa-users] Fwd: NetworkError : invalid continuation byte with utf8 codec

2016-01-06 Thread Carlos Raúl Laguna
Happy new year to all, just to point out that this also affect Fedora23 Free-IPA 4.2.0 and 4.3.0 from corps. locale are set to es_ES.UTF-8. Regards 2016-01-05 23:32 GMT-05:00 Fraser Tweedale : > On Mon, Jan 04, 2016 at 03:13:43PM +0100, Domineaux Philippe wrote: > > Hello, > > > > Happy new year

[Freeipa-users] Unable to install ipa-server-trust-ad

2015-07-22 Thread Carlos Raúl Laguna
Hello everyone, i am using fedora 22 server with copr repos enabled for freeipa 4.2, according with the documentation i execute sudo dnf install -y "*ipa-server" "*ipa-server-trust-ad" bind bind-dyndb-ldap however the following error occurs Error: package freeipa-server-trust-ad-4.1.4-2.fc22.x86

Re: [Freeipa-users] Single mail deployment i an FreeIPA-WindowsAD scenario.

2015-05-28 Thread Carlos Raúl Laguna
Thanks for the clarifications, one more question, does FreeIPA support partial or fractional replications? Regards 2015-05-28 0:25 GMT-04:00 Alexander Bokovoy : > On Wed, 27 May 2015, Carlos Raúl Laguna wrote: > >> Hello Martin, Alexander >> >> Seem that the time shift i

Re: [Freeipa-users] Single mail deployment i an FreeIPA-WindowsAD scenario.

2015-05-27 Thread Carlos Raúl Laguna
ek wrote: >>> >>>> On 05/26/2015 07:36 PM, Carlos Raúl Laguna wrote: >>>> >>>>> Hello Martin, >>>>> >>>>> The email deployment it is a groupware in this scenario Kolab, kolab >>>>> use >>>>>

Re: [Freeipa-users] Single mail deployment i an FreeIPA-WindowsAD scenario.

2015-05-26 Thread Carlos Raúl Laguna
Hello Martin, The email deployment it is a groupware in this scenario Kolab, kolab use 389 ad as main backend and it require some kolab ldap specific attribute to work properly, this is not a problem in fact is quite easy to use freeipa as kolab backend, so far so good but the romance only get thi

Re: [Freeipa-users] Single mail deployment i an FreeIPA-WindowsAD scenario.

2015-05-25 Thread Carlos Raúl Laguna
Any ideas how to overcome this? Winsync may be a better approach for us instead of cross-trust.Regards 2015-05-25 13:06 GMT-04:00 Carlos Raúl Laguna : > How i can use a single backend for a email deployment in such scenario ? > Since i am using forest trust, therefore users are not pres

[Freeipa-users] Single mail deployment i an FreeIPA-WindowsAD scenario.

2015-05-25 Thread Carlos Raúl Laguna
How i can use a single backend for a email deployment in such scenario ? Since i am using forest trust, therefore users are not present in one place. Regards -- Manage your subscription for the Freeipa-users mailing list: https://www.redhat.com/mailman/listinfo/freeipa-users Go to http://freeipa.o

Re: [Freeipa-users] [[Test-Announce] Fedora 22 Final status is Go, release on May 26, 2015]

2015-05-22 Thread Carlos Raúl Laguna
:00 Alexander Bokovoy : > On Fri, 22 May 2015, Carlos Raúl Laguna wrote: > >> Hi Alexander >> Great news, does this also mean that user created in freeipa are self >> created/synchronized in the windows ad ? Regtards >> > With cross-forest trust we don't synchr

Re: [Freeipa-users] [[Test-Announce] Fedora 22 Final status is Go, release on May 26, 2015]

2015-05-22 Thread Carlos Raúl Laguna
Hi Alexander Great news, does this also mean that user created in freeipa are self created/synchronized in the windows ad ? Regtards 2015-05-22 15:00 GMT-04:00 Alexander Bokovoy : > Hi, > > As per attached message, Fedora 22 final release will come to life next > week. If you are planning to use

Re: [Freeipa-users] Migration from FreeIPA-Windows to FreeIPA-samba4

2014-10-13 Thread Carlos Raúl Laguna
2014-10-09 18:12 GMT-04:00 Dmitri Pal : > On 10/09/2014 04:38 PM, Carlos Raúl Laguna wrote: > > Hello to everyone, for some time now i have been pretty much stalking the > samba project site, looking forward to forest trust and it seem that they > introduced new functions t

[Freeipa-users] Migration from FreeIPA-Windows to FreeIPA-samba4

2014-10-09 Thread Carlos Raúl Laguna
Hello to everyone, for some time now i have been pretty much stalking the samba project site, looking forward to forest trust and it seem that they introduced new functions to support trust domains https://download.samba.org/pub/samba/rc/WHATSNEW-4.2.0rc1.txt i guess i an future will be possible.

Re: [Freeipa-users] FreeIPA customized for Kolab

2014-07-05 Thread Carlos Raúl Laguna
Will do, need to make a proper guide first.Thanks to all. Regards 2014-07-04 3:26 GMT-04:00 Petr Spacek : > On 4.7.2014 00:49, Carlos Raúl Laguna wrote: > >> In cn=config >> a extensibleObject whit a domainRelatedObject and aci (require by kolab) >> >> >>

Re: [Freeipa-users] FreeIPA customized for Kolab

2014-07-03 Thread Carlos Raúl Laguna
your answer. Regards 2014-07-03 18:12 GMT-04:00 Rich Megginson : > On 07/03/2014 04:09 PM, Carlos Raúl Laguna wrote: > > Hello everyone, for some time i was trying to make Kolab Groupwere to work > with FreeIPA and after some research is now working. > > > Great! > >

[Freeipa-users] FreeIPA customized for Kolab

2014-07-03 Thread Carlos Raúl Laguna
Hello everyone, for some time i was trying to make Kolab Groupwere to work with FreeIPA and after some research is now working. However the modification made in FreeIPA makes me wonder if some how limit the functions of the software. Changes Made: Creation of OU=Groups (Don't want to mix FreeIpa