[Freeipa-users] FreeIPA Training Series

2013-06-05 Thread Martin Kosek
Hello FreeIPA and SSSD users, Our team just published FreeIPASSSD training presentations created in the event of finishing FreeIPA 3.0 and SSSD 1.9.2 back in beginning of 2013. I would like to welcome you to look at the presentations, they contain useful information with aim to help you with

Re: [Freeipa-users] IPA different ID results on different nodes

2013-06-05 Thread Sumit Bose
On Tue, Jun 04, 2013 at 09:40:21AM -0400, Aly Khimji wrote: I re-logged in this morning into the server and i see the following on the server Any thoughts? Thx again. SERVER: -sh-4.1$ id uid=59401108(akhi...@corpnonprd..com) gid=59401108( akhi...@corpnonprd..com)

[Freeipa-users] Announcing bind-dyndb-ldap version 3.3

2013-06-05 Thread Petr Spacek
The FreeIPA team is proud to announce bind-dyndb-ldap version 3.2. It can be downloaded from https://fedorahosted.org/released/bind-dyndb-ldap/. The new version has also been built for Fedora 19 and now it in updates-testing: https://admin.fedoraproject.org/updates/FEDORA-2013-10003 This

Re: [Freeipa-users] Fedora 19 test day: OTP based 2FA using FreeIPA

2013-06-05 Thread Petr Spacek
On 28.5.2013 17:41, Dmitri Pal wrote: To read more about the test day and suggested tests see the following link https://fedoraproject.org/wiki/Test_Day:2013-06-06_FreeIPA_Two_Factor_Authentication Links to LiveCD ISOs on Test Day Wiki page are broken. There is too many 0 in links. i686

Re: [Freeipa-users] Fedora 19 test day: OTP based 2FA using FreeIPA

2013-06-05 Thread Rob Crittenden
Petr Spacek wrote: On 28.5.2013 17:41, Dmitri Pal wrote: To read more about the test day and suggested tests see the following link https://fedoraproject.org/wiki/Test_Day:2013-06-06_FreeIPA_Two_Factor_Authentication Links to LiveCD ISOs on Test Day Wiki page are broken. There is too many 0

Re: [Freeipa-users] sudo rules user and host group bugs?

2013-06-05 Thread Dmitri Pal
On 06/05/2013 11:20 AM, KodaK wrote: I know this has been discussed before, but I didn't see anything with a cursory search. There are bugs when using user and host groups with sudo rules. I have to split out my users and hosts into individual entries. I'm running ipa 3.0.0-26 on RHEL.

Re: [Freeipa-users] sudo rules user and host group bugs?

2013-06-05 Thread Jakub Hrozek
On Wed, Jun 05, 2013 at 10:20:24AM -0500, KodaK wrote: I know this has been discussed before, but I didn't see anything with a cursory search. There are bugs when using user and host groups with sudo rules. I have to split out my users and hosts into individual entries. I'm running ipa

Re: [Freeipa-users] sudo rules user and host group bugs?

2013-06-05 Thread Lukáš Bezdička
Hi, lately I spent some time with debugging sudo, what I ended up with was: I created sudo rule in ipa called defaults with sudo option fqdn. defaults is being checked by sssd as default setting. I set up NIS domain on hosts same as ipa domain. See getent netgroup hostgroup sudo seems to work

Re: [Freeipa-users] sudo rules user and host group bugs?

2013-06-05 Thread KodaK
Sorry, for some reason gmail makes me forget about reply all. On Wed, Jun 5, 2013 at 2:45 PM, Dmitri Pal d...@redhat.com wrote: On 06/05/2013 11:20 AM, KodaK wrote: I know this has been discussed before, but I didn't see anything with a cursory search. There are bugs when using user and

[Freeipa-users] Ubunto client?

2013-06-05 Thread Guy Matz
Hi! Can anyone recommend a PPA that contains a freeIPA client that: 1. works 2. Also contains an openssh-server that uses AuthorizedKeysCommand Thanks a lot, Guy ___ Freeipa-users mailing list Freeipa-users@redhat.com

Re: [Freeipa-users] Limiting Host access by UID/GID

2013-06-05 Thread Chandan Kumar
Sorry for late reply. Thanks for helping out. Yes after deleting the sssd cache from /var/lib it does not allow user groups outside min/max_id. Thanks Chandan On Tuesday, June 4, 2013, Jakub Hrozek wrote: On Fri, May 31, 2013 at 08:50:29AM -0700, Chandan Kumar wrote: As far as my

[Freeipa-users] IPA Replica Issue

2013-06-05 Thread JR Aquino
I have been having replication issues since the update to RHEL6.4 and 389-ds-base-1.2.11.15-12. It is entirely possible that we have more than just 1 problem. Frequently we seeing errors in our replication monitoring indicating: -1 Incremental update has failed and requires administrator

Re: [Freeipa-users] IPA Replica Issue

2013-06-05 Thread JR Aquino
On Jun 5, 2013, at 5:26 PM, Rich Megginson wrote: On 06/05/2013 05:49 PM, JR Aquino wrote: I have been having replication issues since the update to RHEL6.4 and 389-ds-base-1.2.11.15-12. It is entirely possible that we have more than just 1 problem. Frequently we seeing errors in our

Re: [Freeipa-users] IPA Replica Issue

2013-06-05 Thread Rich Megginson
On 06/05/2013 07:20 PM, JR Aquino wrote: On Jun 5, 2013, at 5:26 PM, Rich Megginson wrote: On 06/05/2013 05:49 PM, JR Aquino wrote: I have been having replication issues since the update to RHEL6.4 and 389-ds-base-1.2.11.15-12. It is entirely possible that we have more than just 1 problem.

Re: [Freeipa-users] sudo rules user and host group bugs?

2013-06-05 Thread JR Aquino
On Jun 5, 2013, at 1:47 PM, KodaK wrote: Sorry, for some reason gmail makes me forget about reply all. On Wed, Jun 5, 2013 at 2:45 PM, Dmitri Pal d...@redhat.commailto:d...@redhat.com wrote: On 06/05/2013 11:20 AM, KodaK wrote: I know this has been discussed before, but I didn't see anything