Re: [Freeipa-users] [Freeipa-devel] Announcing bind-dyndb-ldap version 3.2

2013-05-23 Thread Timo Aaltonen
On 21.05.2013 11:16, Petr Spacek wrote: > On 21.5.2013 07:00, Timo Aaltonen wrote: >> No I meant the huge-ish patch to BIND that bind-dyndb-ldap depends on, >> available here: >> >> https://github.com/mnagy/bind-dynamic_db/downloads >> >> I haven't asked the Debian maintainer yet, but suspect there

[Freeipa-users] freenx stops working after joining centos 6.4 to ipa domain (with workaround)

2013-05-23 Thread Natxo Asenjo
hi, after (long) troubleshooting I finally pinpointed an annoying problem. Centos offers freenx (the free version of nomachine, so not a Red Hat problem) that allows multiple sessions and not just only 2 users like the free nochine version. This is very nice. After the upgrade to version 6.4, th

Re: [Freeipa-users] freenx stops working after joining centos 6.4 to ipa domain (with workaround)

2013-05-23 Thread Denis De Messemacker
On Thu, May 23, 2013 at 1:53 PM, Natxo Asenjo wrote: > hi, > > after (long) troubleshooting I finally pinpointed an annoying problem. > > Centos offers freenx (the free version of nomachine, so not a Red Hat > problem) that allows multiple sessions and not just only 2 users like the > free nochine

[Freeipa-users] FreeIPA 3.2.0?

2013-05-23 Thread Dean Hunter
On Fri, 2013-05-17 at 09:55 -0400, Rob Crittenden wrote: > Martin Kosek wrote: > > On 05/16/2013 05:56 PM, Dean Hunter wrote: > >> I can not find FreeIPA 3.2.0 this morning: > >> > >> [root@ipa ~]# yum list available bind bind-dyndb-ldap freeipa* > >> Loaded plugins: langpacks, refresh-packagekit >

Re: [Freeipa-users] FreeIPA 3.2.0?

2013-05-23 Thread Rob Crittenden
Dean Hunter wrote: On Fri, 2013-05-17 at 09:55 -0400, Rob Crittenden wrote: Martin Kosek wrote: On 05/16/2013 05:56 PM, Dean Hunter wrote: I can not find FreeIPA 3.2.0 this morning: [root@ipa ~]# yum list available bind bind-dyndb-ldap freeipa* Loaded plugins: langpacks, refresh-packagekit Av

[Freeipa-users] Automount cross-location support

2013-05-23 Thread Sigbjorn Lie
Hi, I opened a RFE request almost 2 years ago for automount cross-location support, and recently I discovered how it can be integrated. https://fedorahosted.org/freeipa/ticket/1699 It is possible to reference a LDAP map from outside what is set in the BASE_DN in /etc/sysconfig/autofs. Consid

Re: [Freeipa-users] Automount cross-location support

2013-05-23 Thread Martin Kosek
On 05/23/2013 04:56 PM, Sigbjorn Lie wrote: > Hi, > > I opened a RFE request almost 2 years ago for automount cross-location > support, and recently I > discovered how it can be integrated. > > https://fedorahosted.org/freeipa/ticket/1699 > > > It is possible to reference a LDAP map from outsi

Re: [Freeipa-users] Automount cross-location support

2013-05-23 Thread Rob Crittenden
Sigbjorn Lie wrote: Hi, I opened a RFE request almost 2 years ago for automount cross-location support, and recently I discovered how it can be integrated. https://fedorahosted.org/freeipa/ticket/1699 It is possible to reference a LDAP map from outside what is set in the BASE_DN in /etc/sys

Re: [Freeipa-users] FreeIPA 3.2.0?

2013-05-23 Thread Dean Hunter
On Thu, 2013-05-23 at 10:36 -0400, Rob Crittenden wrote: > Dean Hunter wrote: > > On Fri, 2013-05-17 at 09:55 -0400, Rob Crittenden wrote: > >> Martin Kosek wrote: > >>> On 05/16/2013 05:56 PM, Dean Hunter wrote: > I can not find FreeIPA 3.2.0 this morning: > > [root@ipa ~]# yum list

Re: [Freeipa-users] FreeIPA 3.2.0?

2013-05-23 Thread Martin Kosek
On 05/23/2013 05:57 PM, Dean Hunter wrote: > On Thu, 2013-05-23 at 10:36 -0400, Rob Crittenden wrote: >> Dean Hunter wrote: >>> On Fri, 2013-05-17 at 09:55 -0400, Rob Crittenden wrote: Martin Kosek wrote: > On 05/16/2013 05:56 PM, Dean Hunter wrote: >> I can not find FreeIPA 3.2.0 this

Re: [Freeipa-users] FreeIPA 3.2.0?

2013-05-23 Thread Dean Hunter
On Thu, 2013-05-23 at 17:58 +0200, Martin Kosek wrote: > On 05/23/2013 05:57 PM, Dean Hunter wrote: > > On Thu, 2013-05-23 at 10:36 -0400, Rob Crittenden wrote: > >> Dean Hunter wrote: > >>> On Fri, 2013-05-17 at 09:55 -0400, Rob Crittenden wrote: > Martin Kosek wrote: > > On 05/16/2013 05

Re: [Freeipa-users] FreeIPA 3.2.0?

2013-05-23 Thread Dean Hunter
On Thu, 2013-05-23 at 17:58 +0200, Martin Kosek wrote: > On 05/23/2013 05:57 PM, Dean Hunter wrote: > > On Thu, 2013-05-23 at 10:36 -0400, Rob Crittenden wrote: > >> Dean Hunter wrote: > >>> On Fri, 2013-05-17 at 09:55 -0400, Rob Crittenden wrote: > Martin Kosek wrote: > > On 05/16/2013 05

Re: [Freeipa-users] FreeIPA 3.2.0?

2013-05-23 Thread Rob Crittenden
Dean Hunter wrote: On Thu, 2013-05-23 at 17:58 +0200, Martin Kosek wrote: # koji download-build freeipa-3.2.0-2.fc19 --arch x86_64 HTH, Martin Do these messages mean that there are addition RPMs that are missing from the Fedora 19 repositories? You need samba-4.0.6-2. See https://bugzilla

[Freeipa-users] Installing a Godaddy Cert with ipa-server-certinstall

2013-05-23 Thread John Moyer
So I found this page and followed it. The http daemon works great (no longer complains about not being the cert for my URL. However, now I can't bind anymore servers to my IPA server. The current servers enrolled before I did this work great (and I can login using my IPA credentials). Howe

Re: [Freeipa-users] Installing a Godaddy Cert with ipa-server-certinstall

2013-05-23 Thread Dmitri Pal
On 05/23/2013 01:37 PM, John Moyer wrote: > So I found this page and followed it. The http daemon works great (no > longer complains about not being the cert for my URL. However, now I > can't bind anymore servers to my IPA server. The current servers > enrolled before I did this work great (an

Re: [Freeipa-users] Installing a Godaddy Cert with ipa-server-certinstall

2013-05-23 Thread John Moyer
Dmitri, Here are the corresponding answers, thanks for the quick response. 1. ipa-client-3.0.0-26.el6_4.2.x86_64 2. [root@ ~]# ipa-client-install --domain=digitalreasoning.com --server=ipa1.corp.digitalreasoning.com --realm=EXAMPLE.COM -p builduser -w "BLAH" -U Hostname: client.example.com

Re: [Freeipa-users] FreeIPA password sync one direction only (Windows DC -> IPA)

2013-05-23 Thread Rich Megginson
On 05/23/2013 12:38 PM, Steve Dainard wrote: Eventually the service did stop [root@ipa1 slapd-MIOVISION-LINUX]# service dirsrv restart Shutting down dirsrv: MIOVISION-LINUX... [FAILED] PKI-IPA... [ OK ] *** Error: 1 instance(s) unsuccessfully stopped [FAILED] Starting dirsrv:

Re: [Freeipa-users] Installing a Godaddy Cert with ipa-server-certinstall

2013-05-23 Thread Rob Crittenden
John Moyer wrote: Dmitri, Here are the corresponding answers, thanks for the quick response. 1. ipa-client-3.0.0-26.el6_4.2.x86_64 2. [root@ ~]# ipa-client-install --domain=digitalreasoning.com --server=ipa1.corp.digitalreasoning.com

Re: [Freeipa-users] Installing a Godaddy Cert with ipa-server-certinstall

2013-05-23 Thread John Moyer
Rob, I tried what you suggested on the client, and that did not work. I copied my cert over those two files you suggested that was easy. However, is there a more manually way to change that LDAP setting you are talking about. The LDAP server is not letting me in because of the cert

Re: [Freeipa-users] Installing a Godaddy Cert with ipa-server-certinstall

2013-05-23 Thread Dmitri Pal
On 05/23/2013 05:10 PM, John Moyer wrote: > Rob, > > I tried what you suggested on the client, and that did not work. I > copied my cert over those two files you suggested that was easy. However, is > there a more manually way to change that LDAP setting you are talking about. > The L

[Freeipa-users] FreeIPA 3.2.0?

2013-05-23 Thread Dean Hunter
On Thu, 2013-05-23 at 13:22 -0400, Rob Crittenden wrote: > Dean Hunter wrote: > > On Thu, 2013-05-23 at 17:58 +0200, Martin Kosek wrote: > >> > >> # koji download-build freeipa-3.2.0-2.fc19 --arch x86_64 > >> > >> HTH, > >> Martin > > > > Do these messages mean that there are addition RPMs that are