We're currently running SunDS and using Citrix (Netscaler) load balancers to
keep the load on our client facing LDAP servers balanced between 2 hosts.
I'm evaluating FreeIPA and wondered if anyone can share any experience with
using IPA behind a load balancer (or point me at wikidocs)?
I know the
Can anyone give me some tips or document links on client deployment
automation (I'm using puppet) to update the /etc/krb5.keytab file?
I'm using IPA 1.2.2 on Centos5 and it seems the direct approach is to script
the creation of the service principles (ipa-addservice) and extract all of
the keytabs
I'm working on migrating from SunDS to IPA and I've got everything moved
over, but I'm having some issues with userPassword. I'd like users to be
able to connect with their existing passwords and set an force a password
expiration after our transition is done.
I can copy the {SHA} hash from SunDS
s provided"
I'm guess that's referring to a misconfigured DNS SRV record, but before I
go down that road I wonder if anyone else has outlined the proper steps?
--
Doug Chapman
___
Freeipa-users mailing list
Freeipa-users@redhat.com
https://
___
> Freeipa-users mailing list
> Freeipa-users@redhat.com
> https://www.redhat.com/mailman/listinfo/freeipa-users
>
--
Doug Chapman
___
Freeipa-users mailing list
Freeipa-users@redhat.com
https://www.redhat.com/mailman/listinfo/freeipa-users
position to play with this.
1. There is no GUI 'realm configuration tool', you have to manually
> edit the file:
>
/Library/Preferences/edu.mit.kerberos
>
>
Use /System/Library/CoreServices/Ticket Viewer.app to manage
your Kerberos keys,
y"
>> VALUE_ATTRIBUTE="**automountInformation"
>> LDAP_URI="ldap://freeipa.home.**zhukoff.net<http://freeipa.home.zhukoff.net>
>> "
>> SEARCH_BASE="cn=default,cn=**automount,dc=home,dc=zhukoff,**dc=net"
>>
>>
I've had be