Re: [Freeipa-users] FreeIPA 4.3.0 Kerberos client referrals not working?

2016-02-17 Thread Sumit Bose
On Tue, Feb 16, 2016 at 10:23:30PM +, Nathan Peters wrote: > I have created a trust between my FreeIPA domain and an active directory > domain. I can get a kerberos ticket properly from the other domain at the > command line on the IPA server. > I have also created sudo and HBAC rules to all

Re: [Freeipa-users] FreeIPA 4.3.0 Kerberos client referrals not working?

2016-02-17 Thread Jakub Hrozek
On Wed, Feb 17, 2016 at 09:13:00AM +0100, Sumit Bose wrote: > On Tue, Feb 16, 2016 at 10:23:30PM +, Nathan Peters wrote: > > I have created a trust between my FreeIPA domain and an active directory > > domain. I can get a kerberos ticket properly from the other domain at the > > command line

[Freeipa-users] Logging configuration for ipa server

2016-02-17 Thread bahan w
Hello ! I send you this mail for a question about the kerberos logs on the ipa server. On the server, there are two configuration files : - kdc.conf : for the server - krb5.conf : for the client In both of these files, we can put a logging section. In this section, there is 3 parameters : - defa

Re: [Freeipa-users] Logging configuration for ipa server

2016-02-17 Thread David Kupka
On 17/02/16 09:36, bahan w wrote: Hello ! I send you this mail for a question about the kerberos logs on the ipa server. On the server, there are two configuration files : - kdc.conf : for the server - krb5.conf : for the client In both of these files, we can put a logging section. In this sec

Re: [Freeipa-users] Split backup actions in stop - backup - start commands

2016-02-17 Thread Matt .
Hi David, I have tested your way out and it seems to be OK. The reason why I need this was is so I can perform a stop and ipa-backup before I start my backup to my backupserver. (pre-command). If I use ipa-backup directly it errors between the stop of ipa and the actual ipa backup. I need to che

[Freeipa-users] Announcing SSSD 1.11.8

2016-02-17 Thread Jakub Hrozek
=== SSSD 1.11.8 === The SSSD team is proud to announce the release of version 1.11.8 of the System Security Services Daemon. As always, the source is available from https://fedorahosted.org/sssd == Feedback == Please provide comments, bugs and other feedback via the sssd-dev

Re: [Freeipa-users] Fwd: [freeipa-users] Configuring Automount on Ubuntu Clients

2016-02-17 Thread Philippe Domineaux
Hello, and don’t you have any issues with the display of files owners. I can only see nobody as the owner/group for files? Le 17 février 2016 à 02:08:51, Domineaux Philippe (pdomine...@gmail.com) a écrit: -- Forwarded message -- From: Filip Pytloun Date: 2016-02-14 8:14 GMT+0

Re: [Freeipa-users] Fwd: [freeipa-users] Configuring Automount on Ubuntu Clients

2016-02-17 Thread Prasun Gera
That could be an nfs v3 v/s v4 issue. I had a similar issue, which I resolved by setting nfs to v3 at mount time. On Wed, Feb 17, 2016 at 8:01 AM, Philippe Domineaux wrote: > Hello, > > and don’t you have any issues with the display of files owners. > I can only see nobody as the owner/group for

Re: [Freeipa-users] Freeipa-users Digest, Vol 84, Issue 87

2016-02-17 Thread Shashi M
> > > Message: 2 > Date: Mon, 27 Jul 2015 17:30:09 +0300 > From: Alexander Bokovoy > To: John Stein > Cc: freeipa-users@redhat.com > Subject: Re: [Freeipa-users] AD trust deployment without IPA authority > over reverse lookup zone > Message-ID: <20150727143009.gc21...@redhat.com> > Conten

Re: [Freeipa-users] ID Views without AD

2016-02-17 Thread Mike Kelly
Digging into the code more, I wonder if this is a bug in sssd? https://github.com/SSSD/sssd/blob/sssd-1_13_0/src/db/sysdb.h#L465-L474 -- NULL is treated as the "default" view, as is the literal string "default", in is_default_view(...). https://github.com/SSSD/sssd/blob/sssd-1_13_0/src/providers/