Hi,

On Thu, Apr 25, 2019 at 1:34 PM None via FreeIPA-users
<freeipa-users@lists.fedorahosted.org> wrote:
>
> Dear,
>
> I encountered an error when installing freeipa using command 
> "ipa-server-install".
>
> Error as below. Can anyone give some idea about how to solve this issue? Is 
> this a FreeIPA bug on RH7.4 linux version?
>
> Thanks ahead.
>
> ...
> Done configuring Kerberos KDC (krb5kdc).
> Applying LDAP updates
> Upgrading IPA:. Estimated time: 1 minute 30 seconds
>   [1/9]: stopping directory server
>   [2/9]: saving configuration
>   [3/9]: disabling listeners
>   [4/9]: enabling DS global lock
>   [5/9]: starting directory server
>   [6/9]: upgrading server
>   [7/9]: stopping directory server
>   [8/9]: restoring configuration
>   [9/9]: starting directory server
> Done.
> Restarting the KDC
> ipa         : ERROR    DNS query for dev04.esgyn.cn. 1 failed: The DNS 
> operation timed out after 30.0005099773 seconds
> ipa         : ERROR    DNS query for dev04.esgyn.cn. 1 failed: The DNS 
> operation timed out after 30.0006871223 seconds
> ipa         : ERROR    DNS query for dev04.esgyn.cn. 1 failed: The DNS 
> operation timed out after 30.0000970364 seconds
> ipa         : ERROR    DNS query for dev04.esgyn.cn. 1 failed: The DNS 
> operation timed out after 30.0009949207 seconds
> ipa         : ERROR    unable to resolve host name dev04.esgyn.cn. to IP 
> address, ipa-ca DNS record will be incomplete
> Please add records in this file to your DNS system: 
> /tmp/ipa.system.records.U1YtQQ.db

I'll hazard a guess and say your FreeIPA server's FQDN is not resolvable.

Please check: https://www.freeipa.org/page/Quick_Start_Guide#DNS_Rules

François


> Configuring client side components
> Using existing certificate '/etc/ipa/ca.crt'.
> Client hostname: dev04.esgyn.cn
> Realm: ESGYN.CN
> DNS Domain: esgyn.cn
> IPA Server: dev04.esgyn.cn
> BaseDN: dc=esgyn,dc=cn
>
> Skipping synchronizing time with NTP server.
> New SSSD config will be created
> Configured sudoers in /etc/nsswitch.conf
> Configured /etc/sssd/sssd.conf
> trying https://dev04.esgyn.cn/ipa/json
> [try 1]: Forwarding 'schema' to json server 'https://dev04.esgyn.cn/ipa/json'
> cannot connect to 'https://dev04.esgyn.cn/ipa/json': Internal Server Error
> The ipa-client-install command failed. See /var/log/ipaclient-install.log for 
> more information
> ipa.ipapython.install.cli.install_tool(CompatServerMasterInstall): ERROR    
> Configuration of client side components failed!
> ipa.ipapython.install.cli.install_tool(CompatServerMasterInstall): ERROR    
> The ipa-server-install command failed. See /var/log/ipaserver-install.log for 
> more information
> _______________________________________________
> FreeIPA-users mailing list -- freeipa-users@lists.fedorahosted.org
> To unsubscribe send an email to freeipa-users-le...@lists.fedorahosted.org
> Fedora Code of Conduct: https://getfedora.org/code-of-conduct.html
> List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
> List Archives: 
> https://lists.fedorahosted.org/archives/list/freeipa-users@lists.fedorahosted.org
_______________________________________________
FreeIPA-users mailing list -- freeipa-users@lists.fedorahosted.org
To unsubscribe send an email to freeipa-users-le...@lists.fedorahosted.org
Fedora Code of Conduct: https://getfedora.org/code-of-conduct.html
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: 
https://lists.fedorahosted.org/archives/list/freeipa-users@lists.fedorahosted.org

Reply via email to