[Freeipa-users] FreeIPA and slave MIT slave KDCs

2016-07-21 Thread Diogenes S. Jesus
Hi everyone. I'm currently planning on deploying FreeIPA as the Master KDC (among other things to leverage from the API and some other built-in features - like replicas). However I find (correct if I'm wrong) FreeIPA not very modular - therefore I would like to know what's the strategy when

[Freeipa-users] FreeIPA 4.3.1 ipa-replica-install wrong exit code?

2017-02-22 Thread Diogenes S. Jesus
We are ansible-playbooking FreeIPA and we don't want to care about if freeipa is installed, we just want to ignore errors if it already is - but for that the exit code is relevant. Either the return code is wrong in the code or in the manual - according to the manual, it should be 3, but it's

Re: [Freeipa-users] FreeIPA and slave MIT slave KDCs

2016-08-18 Thread Diogenes S. Jesus
pa...@redhat.com> wrote: > On 21.7.2016 22:05, Diogenes S. Jesus wrote: > > Hi everyone. > > > > I'm currently planning on deploying FreeIPA as the Master KDC (among > other > > things to leverage from the API and some other built-in features - like > > replica

[Freeipa-users] How to enable anonymous pkinit on FreeIPA 4.3.1 on Ubuntu ?

2016-11-28 Thread Diogenes S. Jesus
I've got one freeipa instance for testing purposes and I'm trying to enable anonymous pkinit support on it[1], as Simon mentioned being possible :) [2] For debug purposes, I have done: /etc/kdc.conf --- [kdcdefaults] kdc_ports = 88 kdc_tcp_ports = 88 restrict_anonymous_to_tgt =