Re: [Freeipa-users] add trust between FreeIPA and Samba AD DC

2017-04-28 Thread Jakub Hrozek
On Fri, Apr 28, 2017 at 07:27:20PM +0200, Tiemen Ruiten wrote: > Hello Alexander, list, > > I did get further by specifying --external=true in the ipa trust-add > command, it works now for *both* the Windows and the Samba domain: > > ipa trust-add office.rdmedia.com --type=ad --admin

Re: [Freeipa-users] add trust between FreeIPA and Samba AD DC

2017-04-28 Thread Tiemen Ruiten
Hello Alexander, list, I did get further by specifying --external=true in the ipa trust-add command, it works now for *both* the Windows and the Samba domain: ipa trust-add office.rdmedia.com --type=ad --admin Administrator --password --two-way=false --external=true IPA reports the trust is

Re: [Freeipa-users] add trust between FreeIPA and Samba AD DC

2017-04-28 Thread Tiemen Ruiten
Hello, I set up a fresh Windows Server 2012R2 instance, configured a new forest named 'clients.rdmedia.com' and I'm getting the same error in the httpd error_log after running 'ipa trust-add clients.rdmedia.com --type=ad --admin=Administrator --password': [Fri Apr 28 12:05:00.420174 2017]

Re: [Freeipa-users] add trust between FreeIPA and Samba AD DC

2017-04-14 Thread Alexander Bokovoy
On to, 13 huhti 2017, Alexander Bokovoy wrote: On Thu, 13 Apr 2017, Tiemen Ruiten wrote: Excerpt from the httpd error_log on the FreeIPA replica: [Thu Apr 13 11:17:44.072996 2017] [:error] [pid 28346] ipa: INFO: [jsonserver_kerb] ad...@i.rdmedia.com: ping(): SUCCESS [Thu Apr 13 11:17:50.708019

Re: [Freeipa-users] add trust between FreeIPA and Samba AD DC

2017-04-13 Thread Alexander Bokovoy
On Thu, 13 Apr 2017, Tiemen Ruiten wrote: Excerpt from the httpd error_log on the FreeIPA replica: [Thu Apr 13 11:17:44.072996 2017] [:error] [pid 28346] ipa: INFO: [jsonserver_kerb] ad...@i.rdmedia.com: ping(): SUCCESS [Thu Apr 13 11:17:50.708019 2017] [:error] [pid 28347] ipa: ERROR:

Re: [Freeipa-users] add trust between FreeIPA and Samba AD DC

2017-04-13 Thread Tiemen Ruiten
Excerpt from the httpd error_log on the FreeIPA replica: [Thu Apr 13 11:17:44.072996 2017] [:error] [pid 28346] ipa: INFO: [jsonserver_kerb] ad...@i.rdmedia.com: ping(): SUCCESS [Thu Apr 13 11:17:50.708019 2017] [:error] [pid 28347] ipa: ERROR: non-public: RuntimeError: (-1073741811, 'Unexpected

Re: [Freeipa-users] add trust between FreeIPA and Samba AD DC

2017-04-13 Thread Tiemen Ruiten
Of course: FreeIPA versions: [root@ipa-ams-01 samba]# rpm -qa | grep ipa libipa_hbac-1.14.0-43.el7_3.14.x86_64 sssd-ipa-1.14.0-43.el7_3.14.x86_64 python2-ipaclient-4.4.0-14.el7.centos.7.noarch ipa-server-trust-ad-4.4.0-14.el7.centos.7.x86_64 ipa-client-common-4.4.0-14.el7.centos.7.noarch

Re: [Freeipa-users] add trust between FreeIPA and Samba AD DC

2017-04-13 Thread Alexander Bokovoy
On to, 13 huhti 2017, Tiemen Ruiten wrote: Apologies, now with proper subject. On 13 April 2017 at 16:49, Tiemen Ruiten wrote: Hello! As I understand from this thread, it should be possible to