Re: [Freeipa-users] Certificate operation cannot be completed: Unable to communicate with CMS (Not Found)

2015-05-27 Thread Sanju A
Hi Rob, ipactl status is up and the flag is also in the correct state. However I have restarted pki-cad and the issue got fixed. Thanks for your help in fixing the issue. Regards Sanju Abraham From: Rob Crittenden To: Sanju A Cc: freeipa-users@redhat.com Date: 22-05-2015 19

Re: [Freeipa-users] Certificate operation cannot be completed: Unable to communicate with CMS (Not Found)

2015-05-22 Thread Sanju A
',token='NSS Certificate DB',pinfile='/etc/httpd/alias/pwdfile.txt' certificate: type=NSSDB,location='/etc/httpd/alias',nickname='Server-Cert',token='NSS Certificate DB' CA: IPA issuer: CN=Certificate Authority,O=MYDOMAINNAME.COM subject: CN=ipa.mydomainna

Re: [Freeipa-users] Certificate operation cannot be completed: Unable to communicate with CMS (Not Found)

2015-05-22 Thread Sanju A
Dear Rob, The result is from ipa master server. Regards Sanju Abraham From: Rob Crittenden To: Sanju A Cc: freeipa-users@redhat.com Date: 21-05-2015 19:03 Subject:Re: [Freeipa-users] Certificate operation cannot be completed: Unable to communicate with CMS (Not Found

Re: [Freeipa-users] Certificate operation cannot be completed: Unable to communicate with CMS (Not Found)

2015-05-20 Thread Sanju A
OM expires: 2016-04-30 12:44:55 UTC key usage: digitalSignature,nonRepudiation,keyEncipherment,dataEncipherment eku: id-kp-serverAuth,id-kp-clientAuth pre-save command: post-save command: track: yes auto-renew: yes Regards Sanju Abraham

[Freeipa-users] Certificate operation cannot be completed: Unable to communicate with CMS (Not Found)

2015-05-20 Thread Sanju A
Hi, I am getting the following error while removing a host. --- Certificate operation cannot be completed: Unable to communicate with CMS (Not Found) --- Apache log --- [Wed May 20 12:10:26 2015] [error]

[Freeipa-users] Users home directory with 755 permission instead of 700

2015-04-22 Thread Sanju A
Dear All, Permission of all users in our 300 + machines are created with 755 instead of 700. I have checked the same in forums and got the one. http://stackoverflow.com/questions/23040225/incorrect-permissions-when-home-directory-is-automatically-created-in-freeipa Let me know whether I have to

Re: [Freeipa-users] Replication failed

2015-04-07 Thread Sanju A
: Martin Basti To: Sanju A , freeipa-users@redhat.com Date: 07-04-2015 16:53 Subject:Re: [Freeipa-users] Replication failed On 07/04/15 13:13, Sanju A wrote: Dear All, Replication was working fine for the last 1 month and recently the replica server (ipa2) is having some hard

[Freeipa-users] Replication failed

2015-04-07 Thread Sanju A
Dear All, Replication was working fine for the last 1 month and recently the replica server (ipa2) is having some hardware issue and it was down for a week. Replication is not working once the machine is up. Please help. [root@ipa etc]# service dirsrv status dirsrv PKI-IPA (pid 29954) is runni

[Freeipa-users] Failed to fall over to replica with master down

2015-03-18 Thread Sanju A
Hi All, I have configured IPA and later configured master-master replication. But it failed to fall over to the replica when master down. Please help Here are the details. ipa.example.com - 192.168.1.51 ipa2.example.com - 192.168.1.61 Command using for joining machines : ipa-client-install --m

[Freeipa-users] Renaming Sudo rule name

2015-02-10 Thread Sanju A
Hi All, Is there any way I can re-name the sudo rule name or copy the existing sudo rule to a new one. Regards Sanju Abraham =-=-= Notice: The information contained in this e-mail message and/or attachments to it may contain confidential or privileged information. If you

[Freeipa-users] Client configuration to point to Replica server once master service failed

2014-12-31 Thread Sanju A
Hi All, I have configured Master - Master replication and replication (bi direction) is working fine. Can I get the configuration that has to be added/modified in server/client machine so as to point to the replica server once the master failed. Right now it is not working. Regards Sanju Abr

Re: [Freeipa-users] sudo setup in Ubuntu

2014-09-17 Thread Sanju A
mc' as root on ubuntu.example.test. $ echo $? 1 On 17-09-2014 16:54, Sanju A wrote: Dear All, I am able to configure the sudo settings in Centos clients by adding/modifying the entries in /etc/nsswitch.conf and /etc/sudo-ldap.conf. What is the exact steps for the configuration in Ubuntu as

[Freeipa-users] sudo setup in Ubuntu

2014-09-17 Thread Sanju A
Dear All, I am able to configure the sudo settings in Centos clients by adding/modifying the entries in /etc/nsswitch.conf and /etc/sudo-ldap.conf. What is the exact steps for the configuration in Ubuntu as I am not able find the configuration file sudo-ldap.conf in Ubuntu. Regards Sanju Ab

[Freeipa-users] Adding user created in IPA to end machine group

2014-07-24 Thread Sanju A
Dear All, Centralized authentication is working fine and we have a requirement to give privilege to users for configuring printer in their machines. For local users, they will get the privilege by adding them to the local printer group (lp or lpadmin group). Is there any way to add the user to

[Freeipa-users] Export user and host list to a csv or text file

2014-05-22 Thread Sanju A
Dear All, Is there any command to export the user and host list to a csv or text format Regards Sanju Abraham ___ =-=-= Notice: The information contained in this e-mail message and/or attachments to it may contain confidential or privileged information. If you are n