Re: [Freeipa-users] Unable to establish trust with FreeIPA and Active Directory

2014-04-07 Thread Alexander Bokovoy
On Thu, 03 Apr 2014, Matthew W Hanley wrote: I'm in the midst of setting up a trust with FreeIPA and Active Directory and am receiving the following error: # ipa trust-add --type=ad ad.example.com --admin 'mwhanley' --password Active directory domain administrator's password: ipa: ERROR: Cannot

Re: [Freeipa-users] Unable to establish trust with FreeIPA and Active Directory

2014-04-04 Thread Alexander Bokovoy
On Fri, 04 Apr 2014, Redmond, Stacy wrote: We will be using unix as the Kerberos realm and unix.sbx.local as the domain so we can use srv records for the unix hosts to point at ipa. The AD domain is sbx.local, here is the output using the AD domain [root@linuxtest1 ~]# ipa trust-add --type=ad sb

Re: [Freeipa-users] Unable to establish trust with FreeIPA and Active Directory

2014-04-04 Thread Redmond, Stacy
x27;sbx.local', trust_type=u'ad', realm_admin=u'Administrator', realm_passwd=u'****', range_size=20, all=False, raw=False, version=u'2.49'): NotFound [root@linuxtest1 ~]# -Original Message- From: Alexander Bokovoy [mailto:aboko...@redhat.com

Re: [Freeipa-users] Unable to establish trust with FreeIPA and Active Directory

2014-04-04 Thread Alexander Bokovoy
On Fri, 04 Apr 2014, Redmond, Stacy wrote: You are absolutlely right, I had rebuilt the server, and had forgotten to put the log level back in, here it is. [root@linuxtest1 ~]# cat /var/log/httpd/error_log /dev/null lpcfg_load: refreshing parameters from /usr/share/ipa/smb.conf.empty params.c:pm

Re: [Freeipa-users] Unable to establish trust with FreeIPA and Active Directory

2014-04-04 Thread Redmond, Stacy
: trust_add(u'unix.sbx.local', trust_type=u'ad', realm_admin=u'Administrator', realm_passwd=u'****', range_size=20, all=False, raw=False, version=u'2.49'): NotFound [root@linuxtest1 ~]# -Original Message- From: Alexander Bokovoy [m

Re: [Freeipa-users] Unable to establish trust with FreeIPA and Active Directory

2014-04-03 Thread Alexander Bokovoy
s is not the log entries I'd expect. Between ping() and trust_add() line there should be a lot of debug output from Samba Python code. -Original Message- From: Alexander Bokovoy [mailto:aboko...@redhat.com] Sent: Thursday, April 03, 2014 12:12 PM To: Redmond, Stacy Cc: freeipa-users@redha

Re: [Freeipa-users] Unable to establish trust with FreeIPA and Active Directory

2014-04-03 Thread Redmond, Stacy
t.com] Sent: Thursday, April 03, 2014 12:12 PM To: Redmond, Stacy Cc: freeipa-users@redhat.com Subject: Re: [Freeipa-users] Unable to establish trust with FreeIPA and Active Directory On Thu, 03 Apr 2014, Redmond, Stacy wrote: >I have this same exact issue. I have not only verified that DNS is &

Re: [Freeipa-users] Unable to establish trust with FreeIPA and Active Directory

2014-04-03 Thread Alexander Bokovoy
On Thu, 03 Apr 2014, Redmond, Stacy wrote: I have this same exact issue. I have not only verified that DNS is functioning properly, I have also added the AD server to the local hosts file as is the reported fix for this issue and it still persists. add log level = 100 to [global] section in

Re: [Freeipa-users] Unable to establish trust with FreeIPA and Active Directory

2014-04-03 Thread Redmond, Stacy
cific than "Re: Contents of Freeipa-users digest..." Today's Topics: 1. Re: Unable to establish trust with FreeIPA and Active Directory (Sumit Bose) -- Message: 1 Date: Thu, 3 Apr 2014 16:53:31 +0200 From

Re: [Freeipa-users] Unable to establish trust with FreeIPA and Active Directory

2014-04-03 Thread Sumit Bose
On Thu, Apr 03, 2014 at 02:31:55PM +, Matthew W Hanley wrote: > I'm in the midst of setting up a trust with FreeIPA and Active Directory and > am receiving the following error: > > # ipa trust-add --type=ad ad.example.com --admin 'mwhanley' --password > Active directory domain administrator's