[Freeipa-users] Re: Partial replication of LDAP branch

2020-12-15 Thread François Cami via FreeIPA-users
Hi, No, this is not possible. What you seem to want to achieve will be best served when the FreeIPA to FreeIPA domain trust is available. This is not the case today. François On Tue, Dec 15, 2020 at 6:07 PM Karim Bourenane via FreeIPA-users < freeipa-users@lists.fedorahosted.org> wrote: > Hello

[Freeipa-users] Partial replication of LDAP branch

2020-12-15 Thread Karim Bourenane via FreeIPA-users
Hello Team I have a special question, about a partial replication branch domain LDAP into a FreeIPA v. 4.6.2 on Centos 7.7.1908. I want to deploy several FreeIPA into several network zones. Its possible to only replicate a branch of data, to manage only an ipa client / dns / certificat to this z

[Freeipa-users] Re: Installation fails in adding CA certificate entry - certutil does not support --seimple-self-signed

2020-12-15 Thread Florence Blanc-Renaud via FreeIPA-users
On 12/15/20 5:07 PM, iulian roman via FreeIPA-users wrote: After some plumbing and manual operations I managed to have CA running during installation of the FreeIPA server. Currently the install fails in : Configuring directory server (dirsrv) [2/3]: adding CA certificate entry args=['/usr/bin/

[Freeipa-users] Installation fails in adding CA certificate entry - certutil does not support --seimple-self-signed

2020-12-15 Thread iulian roman via FreeIPA-users
After some plumbing and manual operations I managed to have CA running during installation of the FreeIPA server. Currently the install fails in : Configuring directory server (dirsrv) [2/3]: adding CA certificate entry args=['/usr/bin/certutil', '-d', 'dbm:/etc/dirsrv/slapd-IPA-LOCAL/', '-O',

[Freeipa-users] Re: CA configuration fails with SEVERE: Unable to start CMS engine: Property internaldb.ldapconn.port missing value

2020-12-15 Thread iulian roman via FreeIPA-users
I managed to move forward with the installation , which is stuck in another step, but this thread can probably be closed ___ FreeIPA-users mailing list -- freeipa-users@lists.fedorahosted.org To unsubscribe send an email to freeipa-users-le...@lists.fedo