Re: [Freeipa-users] slow login with freeipa 4.2.0

2016-07-30 Thread Rakesh Rajasekharan
Thanks Jakub for the detailed analysis... with those inputs , I was able to nail down the issue. I had migrated this host from openldap to freeipa.. However, nslcd daemon was still running and the sylog pointed me to the error "unable to contact the earlier openldap server" and it spent some time

Re: [Freeipa-users] sssd shows deleted users as well

2016-07-30 Thread Rakesh Rajasekharan
Thanks Jan.. I will give that a try On Fri, Jul 29, 2016 at 7:05 PM, Jan Pazdziora wrote: > On Fri, Jul 22, 2016 at 06:17:32PM +0530, Rakesh Rajasekharan wrote: > > My specific requirement for having "enumerate=TRUE" was , we have a build > > server with the jenkins set up. > > And for authenti

[Freeipa-users] ipa-server-install --external-cert-file and exporting dogtag certificates

2016-07-30 Thread Richard Harmonson
I having challenges resuming ipa-server-install --external-ca. I am reasonably confident I am not providing the right certificate and/or format from my off-line root CA using 389 and Dogtag. Does anyone have instructions on how to accomplish the task of exporting the correct certificates in the ex