Re: [Freeipa-users] IPA 4.4 CA Replications

2017-03-02 Thread Martin Basti
Did you run ipa-ca-install on server2 ? On 02.03.2017 15:20, Matt Wells wrote: > Thank you for the response Martin. Server1 had no flags upon install > however CA, DNS were selected during the installation. Server2 was > joined and then the 'ipa-replica-install --skip-conn-check' used to > join

Re: [Freeipa-users] IPA 4.4 CA Replications

2017-03-02 Thread Matt Wells
Thank you for the response Martin. Server1 had no flags upon install however CA, DNS were selected during the installation. Server2 was joined and then the 'ipa-replica-install --skip-conn-check' used to join it. Manual tests of the ports showed all was good but not in the installation so I had t

Re: [Freeipa-users] IPA 4.4 CA Replications

2017-03-02 Thread Martin Basti
On 01.03.2017 22:00, Matt Wells wrote: I have two new IPA 4.4 servers on CentOS7 installed in a lab. I built the first, joined the second and promoted it to be a master. Thus far all went well. I then ran the ipa-ca-install and when I log back in I see that it has "domain,CA" attached to