[Freeipa-users] Re: DNS record with all IPA servers

2022-03-30 Thread Boris Behrens via FreeIPA-users
Oh great. Thanks a lot. That solved my problem very fast. Cheers Boris Am Mi., 30. März 2022 um 10:19 Uhr schrieb Alexander Bokovoy < aboko...@redhat.com>: > On ke, 30 maalis 2022, Boris Behrens via FreeIPA-users wrote: > >Hi, > >I am currently trying to cleanup our IPA

[Freeipa-users] DNS record with all IPA servers

2022-03-30 Thread Boris Behrens via FreeIPA-users
Hi, I am currently trying to cleanup our IPA installation and saw that all our clients only got a single server configured, which doesn't sound good. (we've currently got two IPA servers). Is there some sort of record that can be used? root@host1:/etc/ipa# cat /etc/ipa/default.conf #File modified

[Freeipa-users] Question about autoregistration

2022-01-27 Thread Boris Behrens via FreeIPA-users
Hi, this might be a dump question: Is there a way to let hosts register themself and force them into a hostgroup? Currently we have one enrollment user that allows systems to join our IPA installation. This user is in a lot of our automation scripts. Now I want to have some customer facing system

[Freeipa-users] Re: DNS issue with CNAME and dnsmasq forwards

2020-11-20 Thread Boris Behrens via FreeIPA-users
as 2020, Boris Behrens via FreeIPA-users wrote: > >Ok, > >the IPA ui tells me: > >DNS Server 10.0.0.205: query 'service.consul. SOA': The DNS response does > >not contain an answer to the question: service.consul. IN SOA. > > > >But the TCPdump tells me that

[Freeipa-users] Re: DNS issue with CNAME and dnsmasq forwards

2020-11-19 Thread Boris Behrens via FreeIPA-users
Ok, the IPA ui tells me: DNS Server 10.0.0.205: query 'service.consul. SOA': The DNS response does not contain an answer to the question: service.consul. IN SOA. But the TCPdump tells me that it got answered: 08:10:01.466563 IP (tos 0x0, ttl 64, id 36617, offset 0, flags [DF], proto UDP (17), leng

[Freeipa-users] DNS issue with CNAME and dnsmasq forwards

2020-11-19 Thread Boris Behrens via FreeIPA-users
Hi, I have a very strange problem: I would like to add a CNAME to the IPA DNS server, that resolves to an internal domain which is forwarded from our central DNSmasq to our consul. I created a zone called test.boris and added a CNAME record cname.test.boris IN CNAME cname.stage.consul. The DNSm

[Freeipa-users] Re: migrate IPA server to new OS

2020-09-04 Thread Boris Behrens via FreeIPA-users
Well, maybe "migrate" is the wrong word. I would like to copy files to another system and have IPA running on the new OS. (like a wordpress or something). Am Fr., 4. Sept. 2020 um 10:02 Uhr schrieb François Cami : > Hi, > > On Fri, Sep 4, 2020 at 9:29 AM Boris Behrens via Fre

[Freeipa-users] migrate IPA server to new OS

2020-09-04 Thread Boris Behrens via FreeIPA-users
Hi, just a short question: Is it possible to migrate a freeIPA server to a new host? I'd like to move from fedora 26 to centos8, but I wouldn't like to "add a new master, then remove the older master, test everything, move ip addresses and fw rules" and all that stuff. Cheers Boris -- Die Selb

[Freeipa-users] Re: pack two exisiting ipa server on one system

2020-08-05 Thread Boris Behrens via FreeIPA-users
g 5, 2020 at 1:34 PM Boris Behrens via FreeIPA-users > wrote: > > I have two freeipa servers which are running on an old operating system > (Fedora26) and I want to migrate it to centos8. > > Are these two hosts identical in terms of roles? E.g. if you use the > integrated CA, d

[Freeipa-users] pack two exisiting ipa server on one system

2020-08-05 Thread Boris Behrens via FreeIPA-users
Hi, upfront: please don't judge our setup. I know that the concept is an issue :-( I have two freeipa servers which are running on an old operating system (Fedora26) and I want to migrate it to centos8. Because there are not enough resources in our mgmt cluster I need to shut one of them down and