Hi,
Thanks a lot Florence, i was able to locate the issue - it seems some
resources were previously enrolled to the previously installed version of
FreeIPA and were trying to authenticate using an old keytab and locking the
admin user.
On Tue, Apr 25, 2023 at 1:24 PM Florence Blanc-Renaud
Hi,
First, you can check which password policy settings are applied to your
admin user:
# kinit admin
# ipa pwpolicy-show --user admin
Group: global_policy
Max lifetime (days): 90
Min lifetime (hours): 1
History size: 0
Character classes: 0
Min length: 8
Max failures: 6
Failure