Re: [Freeipa-devel] [PATCH 0006] Start dirsrv for kdcproxy upgrade

2015-07-14 Thread Jan Cholasta

Dne 14.7.2015 v 12:38 Jan Cholasta napsal(a):

Dne 13.7.2015 v 16:30 Martin Basti napsal(a):

On 10/07/15 18:29, Christian Heimes wrote:

Hi,

this patch ensures that DS is running before HTTPInstance attempts to
connect to LDAP.

https://fedorahosted.org/freeipa/ticket/5113


While I was testing the patch I ran into trouble with DS. The upgrade
script couldn't connect to 389/TCP, although ns-slapd was running. After
some digging I found this log line:

Jul 10 18:13:24 vm-120.abc.idm.lab.eng.brq.redhat.com ns-slapd[6278]:
[10/Jul/2015:18:13:24 +0200] - Information: Non-Secure Port Disabled

which eventually lead me to /etc/dirsrv/slapd-IPA-EXAMPLE/dse.ldif. The
port was disabled with "nsslapd-port: 0". After I stopped DS, changed
the port back to 389 and started DS again, ipa-server-upgrade worked
again.

Christian

ACK



Pushed to master: c701ab612de831f72f21e0f3bfd105fbc515cd4d



and

Pushed to ipa-4-2: d98aa76b26daf461f19d733fedc4bd9a8c36f05f

--
Jan Cholasta

--
Manage your subscription for the Freeipa-devel mailing list:
https://www.redhat.com/mailman/listinfo/freeipa-devel
Contribute to FreeIPA: http://www.freeipa.org/page/Contribute/Code


Re: [Freeipa-devel] [PATCH 0006] Start dirsrv for kdcproxy upgrade

2015-07-14 Thread Jan Cholasta

Dne 13.7.2015 v 16:30 Martin Basti napsal(a):

On 10/07/15 18:29, Christian Heimes wrote:

Hi,

this patch ensures that DS is running before HTTPInstance attempts to
connect to LDAP.

https://fedorahosted.org/freeipa/ticket/5113


While I was testing the patch I ran into trouble with DS. The upgrade
script couldn't connect to 389/TCP, although ns-slapd was running. After
some digging I found this log line:

Jul 10 18:13:24 vm-120.abc.idm.lab.eng.brq.redhat.com ns-slapd[6278]:
[10/Jul/2015:18:13:24 +0200] - Information: Non-Secure Port Disabled

which eventually lead me to /etc/dirsrv/slapd-IPA-EXAMPLE/dse.ldif. The
port was disabled with "nsslapd-port: 0". After I stopped DS, changed
the port back to 389 and started DS again, ipa-server-upgrade worked
again.

Christian

ACK



Pushed to master: c701ab612de831f72f21e0f3bfd105fbc515cd4d

--
Jan Cholasta

--
Manage your subscription for the Freeipa-devel mailing list:
https://www.redhat.com/mailman/listinfo/freeipa-devel
Contribute to FreeIPA: http://www.freeipa.org/page/Contribute/Code


Re: [Freeipa-devel] [PATCH 0006] Start dirsrv for kdcproxy upgrade

2015-07-13 Thread Martin Basti

On 10/07/15 18:29, Christian Heimes wrote:

Hi,

this patch ensures that DS is running before HTTPInstance attempts to
connect to LDAP.

https://fedorahosted.org/freeipa/ticket/5113


While I was testing the patch I ran into trouble with DS. The upgrade
script couldn't connect to 389/TCP, although ns-slapd was running. After
some digging I found this log line:

Jul 10 18:13:24 vm-120.abc.idm.lab.eng.brq.redhat.com ns-slapd[6278]:
[10/Jul/2015:18:13:24 +0200] - Information: Non-Secure Port Disabled

which eventually lead me to /etc/dirsrv/slapd-IPA-EXAMPLE/dse.ldif. The
port was disabled with "nsslapd-port: 0". After I stopped DS, changed
the port back to 389 and started DS again, ipa-server-upgrade worked again.

Christian

ACK

--
Martin Basti

--
Manage your subscription for the Freeipa-devel mailing list:
https://www.redhat.com/mailman/listinfo/freeipa-devel
Contribute to FreeIPA: http://www.freeipa.org/page/Contribute/Code