Re: [Freeipa-users] question about bind 10 plans

2013-04-29 Thread Petr Spacek
On 29.4.2013 08:40, Артур Файзуллин wrote: В Пн., 29/04/2013 в 08:11 +0300, Alexander Bokovoy пишет: Bind 10 module is on our radar. There is not much to add. I'm in touch with one Bind 10 developer and we are discussing various possibilities of integration. Let me know if you are intereste

Re: [Freeipa-users] nsupdate refused

2013-04-29 Thread Petr Spacek
Hello, On 28.4.2013 19:50, Jakub Hrozek wrote: > >get a single machine to be able to perform any update, and have this as > >one of the entries in my "bind update policy": > >grant SERVICE\047foreman.collmedia@collmedia.net wildcard * ANY; String "SERVICE/ipaserver.example@example.com

Re: [Freeipa-users] question about bind 10 plans

2013-04-29 Thread Артур Файзуллин
В Пн., 29/04/2013 в 09:48 +0200, Petr Spacek пишет: > On 29.4.2013 08:40, Артур Файзуллин wrote: > > В Пн., 29/04/2013 в 08:11 +0300, Alexander Bokovoy пишет: > >> Bind 10 module is on our radar. > > There is not much to add. I'm in touch with one Bind 10 developer and we are > discussing various

Re: [Freeipa-users] Kerberos delegation error on replica

2013-04-29 Thread Johan Sunnerstig
That was exactly it. Server 2 had a HTTP principal but no ldap principal. I added a principal for ldap as well and it's working fine now. Thanks a bunch. :) Regards Johan > -Original Message- > From: Rob Crittenden [mailto:rcrit...@redhat.com] > Sent: den 26 april 2013 15:50 > To: Johan

[Freeipa-users] Whit only krb5-workstation and oddjob-mkhomedir

2013-04-29 Thread Axel Berlin
Hello. Im trying to set up a redhat 6.1 to ipaserver. What i have done. On the Ipaserver #ipa host-add --force --ip-address=192.168.237.1 seadv-.d1.gameop.net #kinit admin #ipa host-add-managedby --hosts=ipaserver.d1.gameop.net seadv-237-1.d1.gameop.net #ipa-getkeytab -s ipaserver.d1.ga

Re: [Freeipa-users] Whit only krb5-workstation and oddjob-mkhomedir

2013-04-29 Thread Rob Crittenden
Axel Berlin wrote: Hello. Im trying to set up a redhat 6.1 to ipaserver. What i have done. On the Ipaserver [ snip lots of config ] nameserver 192.168.232.41 I can id and ssh... So have i missed somthing whit the dns? I have tried to have the SRV records to only _ldap._tcp and _ker

Re: [Freeipa-users] Issue IPA: AD Users and IPA Users when using SSS/LDAP with SUDO

2013-04-29 Thread Pavel Březina
On 04/29/2013 08:31 PM, Aly Khimji wrote: Hey Pavel/Guys, Do you see anything in the new logs that might help? I saw this bug https://bugzilla.redhat.com/show_bug.cgi?id=871160 that reports this issue exactly. However its reported as fixed but I am still having the same issue. I am building out