Re: [Freeipa-users] Realm distrubuted across data centers

2013-03-14 Thread Simo Sorce
On Wed, 2013-03-13 at 21:10 -0430, Loris Santamaria wrote: > El mié, 13-03-2013 a las 15:57 -0400, Simo Sorce escribió: > > On Wed, 2013-03-13 at 14:36 -0430, Loris Santamaria wrote: > > > El mié, 13-03-2013 a las 14:44 +0100, Petr Spacek escribió: > > > > On 13.3.2013 14:28, Rob Crittenden wrote:

Re: [Freeipa-users] Realm distrubuted across data centers

2013-03-14 Thread Petr Spacek
o:* Michael ORourke <mailto:mrorou...@earthlink.net> *Cc:* freeipa-users <mailto:freeipa-users@redhat.com> *Sent:* Wednesday, March 13, 2013 12:58 AM *Subject:* Re: [Freeipa-users] Realm distrubuted across data centers I have no idea if this counts as best practice b

Re: [Freeipa-users] Realm distrubuted across data centers

2013-03-13 Thread Loris Santamaria
El mié, 13-03-2013 a las 15:57 -0400, Simo Sorce escribió: > On Wed, 2013-03-13 at 14:36 -0430, Loris Santamaria wrote: > > El mié, 13-03-2013 a las 14:44 +0100, Petr Spacek escribió: > > > On 13.3.2013 14:28, Rob Crittenden wrote: > > > > Michael ORourke wrote: > > > >> I think SRV records are onl

Re: [Freeipa-users] Realm distrubuted across data centers

2013-03-13 Thread Simo Sorce
On Wed, 2013-03-13 at 14:36 -0430, Loris Santamaria wrote: > El mié, 13-03-2013 a las 14:44 +0100, Petr Spacek escribió: > > On 13.3.2013 14:28, Rob Crittenden wrote: > > > Michael ORourke wrote: > > >> I think SRV records are only part of the problem. We are using > > >> integrated BIND/DNS with

Re: [Freeipa-users] Realm distrubuted across data centers

2013-03-13 Thread Loris Santamaria
nore > > the > > SRV records, so you shouldn't have to mess with the resolver at all. > > > > rob > > > >> > >> - Original Message - > >> *From:* Peter Brown <mailto:rendhal...@gmail.com> > >> *To:*

Re: [Freeipa-users] Realm distrubuted across data centers

2013-03-13 Thread de Jong, Mark-Jan
ichael ORourke <mailto:mrorou...@earthlink.net> > > *Cc:* freeipa-users <mailto:freeipa-users@redhat.com> > > *Sent:* Wednesday, March 13, 2013 12:58 AM > > *Subject:* Re: [Freeipa-users] Realm distrubuted across data > centers > > > >

Re: [Freeipa-users] Realm distrubuted across data centers

2013-03-13 Thread Petr Spacek
er Brown <mailto:rendhal...@gmail.com> *To:* Michael ORourke <mailto:mrorou...@earthlink.net> *Cc:* freeipa-users <mailto:freeipa-users@redhat.com> *Sent:* Wednesday, March 13, 2013 12:58 AM *Subject:* Re: [Freeipa-users] Realm distrubuted across data centers I have no ide

Re: [Freeipa-users] Realm distrubuted across data centers

2013-03-13 Thread Simo Sorce
On Wed, 2013-03-13 at 09:28 -0400, Rob Crittenden wrote: > Michael ORourke wrote: > > I think SRV records are only part of the problem. We are using > > integrated BIND/DNS with our IPA servers and I'm not sure it supports > > views. But thanks for the suggestion. > > I guess we could create cust

Re: [Freeipa-users] Realm distrubuted across data centers

2013-03-13 Thread Rob Crittenden
3 12:58 AM *Subject:* Re: [Freeipa-users] Realm distrubuted across data centers I have no idea if this counts as best practice because I am not affiliated with the FreeIPA development team I personally think SRV records are probably the best idea in this situation. You would

Re: [Freeipa-users] Realm distrubuted across data centers

2013-03-13 Thread Michael ORourke
ourke Cc: freeipa-users Sent: Wednesday, March 13, 2013 12:58 AM Subject: Re: [Freeipa-users] Realm distrubuted across data centers I have no idea if this counts as best practice because I am not affiliated with the FreeIPA development team I personally think SRV records are probabl

Re: [Freeipa-users] Realm distrubuted across data centers

2013-03-12 Thread Peter Brown
I have no idea if this counts as best practice because I am not affiliated with the FreeIPA development team I personally think SRV records are probably the best idea in this situation. You would have to setup different zones to serve to each datacentre though if you know how to do that. It's not

[Freeipa-users] Realm distrubuted across data centers

2013-03-12 Thread Michael ORourke
We have a single realm distributed across 2 data centers and 2 offices with 4 replicated IPA servers (2 in each data center). We are running IPA server and client v2.2.0 on all servers and replication appears to be functioning correctly. What I have noticed is that some servers in DC1, have no