On Tue, Apr 30, 2019 at 10:37 AM Karim Bourenane
<karim.bouren...@gmail.com> wrote:
>
> Hello François, all
>
> Thank you, for the release link version and the Redhat link.
>
> I just start on small architecture with 1 master + 2 replicats (no link 
> between), exept via the Master.

This is not a recommended replication scheme.
It leads to split-brain scenarios if your first server goes down. If
that's temporary it might be fine, but it is not recommended and we
will probably not be able to help except suggest rebuilding your
infrastructure if anything wrong happens.

See: 
https://access.redhat.com/documentation/en-us/red_hat_enterprise_linux/7/html/linux_domain_identity_authentication_and_policy_guide/replica-considerations

Also please make sure to install the CA on more than a single server.

> I will install / configure the ipa-client, to bind with this 2 replicats.
>
> Question :
> On the replicat server, why i haven't the GUI Management, its normal ? if 
> yes, is not possible to have ?

The WebUI should be available on all replica instances. Without more
information about the problem you are facing (at least a HTTP error
code and server-side logs) it is next to impossible to understand
what's going on.

> Regard
> Bien à vous
>
> Mr Karim Bourenane
>
>
>
> Le lun. 29 avr. 2019 à 23:09, François Cami <fc...@redhat.com> a écrit :
>>
>> On Mon, Apr 29, 2019 at 10:32 PM Karim Bourenane via FreeIPA-users
>> <freeipa-users@lists.fedorahosted.org> wrote:
>> >
>> > Hello Jochen
>> >
>> > Thanks you or your reply.
>> > My goal, is to authenticate differents users from each client network 
>> > interface. If the first ipa server goes down (or network unreachable), 
>> > then the admin user can access to the second network interface to make 
>> > change/correct .....
>> >
>> > The goals also, is between the the IPA1 et IPA2, the servers don't have 
>> > any link.
>> >
>> > If i understand well, is not possible easyer, because i must change or 
>> > merge the krb5.keytab + sssd.conf right ?
>> >
>> > Also i have another question:
>> > What is the website to begun the full deloyement of FreeIPA ?
>> > Because im litle lost with blog/freeipa.org/fedora/redhat, and somes 
>> > commands was depreciated ...
>> > Im in last version of IPA : v4.6.4
>>
>> This is not the last version by a long shot:
>> https://github.com/freeipa/freeipa/releases
>>
>> For IPA 4.6 you might want to use RHEL 7 documentation:
>> https://access.redhat.com/documentation/en-us/red_hat_enterprise_linux/7/html/linux_domain_identity_authentication_and_policy_guide/index
>>
>> > Regards
>> > Bien à vous
>> >
>> > Mr Karim Bourenane
>> >
>> >
>> > _______________________________________________
>> > FreeIPA-users mailing list -- freeipa-users@lists.fedorahosted.org
>> > To unsubscribe send an email to freeipa-users-le...@lists.fedorahosted.org
>> > Fedora Code of Conduct: https://getfedora.org/code-of-conduct.html
>> > List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
>> > List Archives: 
>> > https://lists.fedorahosted.org/archives/list/freeipa-users@lists.fedorahosted.org
_______________________________________________
FreeIPA-users mailing list -- freeipa-users@lists.fedorahosted.org
To unsubscribe send an email to freeipa-users-le...@lists.fedorahosted.org
Fedora Code of Conduct: https://getfedora.org/code-of-conduct.html
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: 
https://lists.fedorahosted.org/archives/list/freeipa-users@lists.fedorahosted.org

Reply via email to