[Freeipa-users] LDAP only seems to allow anonymous access

2016-08-28 Thread Harry Kashouli
Hi all, I can only seem to connect clients to my FreeIPA's LDAP if I use the following: - Simple authentication - Anonymous login If I try to log in using any user credentials, it will not work. Are both GSS-API and named logins not allowed by default? Thanks, -Harry -- Manage your

Re: [Freeipa-users] ipa-client-automount --uninstall breaks central sudo on ipa-server

2016-08-28 Thread Prasun Gera
> > In retrospect saving a copy of nsswitch.conf is a bit overkill. It really > just needs to save and restore the automount entry in /etc/nsswitch.conf, > not the whole file. > > I think it should also remove the sssd configuration in addition to removing it from nssswitch. i.e. Uninstalling the

Re: [Freeipa-users] LDAP only seems to allow anonymous access

2016-08-28 Thread Rob Crittenden
Harry Kashouli wrote: Hi all, I can only seem to connect clients to my FreeIPA's LDAP if I use the following: - Simple authentication - Anonymous login If I try to log in using any user credentials, it will not work. Are both GSS-API and named logins not allowed by default? Not sure what

Re: [Freeipa-users] ipa-client-automount --uninstall breaks central sudo on ipa-server

2016-08-28 Thread Rob Crittenden
Prasun Gera wrote: In retrospect saving a copy of nsswitch.conf is a bit overkill. It really just needs to save and restore the automount entry in /etc/nsswitch.conf, not the whole file. AFAIR this is already done appropriately in sssd.conf. The service is removed, no files are