Re: [Freeipa-users] Windows Clients can´t access linux services using kerberos

2017-03-15 Thread Carlos Raúl Laguna
and i can access to any linux host enrolled in IPA with my windows credentials, the sso work just fine from any linux host any idea what i am missing ? Thanks in advance 2017-03-15 3:18 GMT-04:00 Carlos Raúl Laguna <carlosla1...@gmail.com>: > Hello everyone I need some help with this I ha

[Freeipa-users] Windows Clients can´t access linux services using kerberos

2017-03-15 Thread Carlos Raúl Laguna
Hello everyone I need some help with this I have set up an IPA 4.4.3 server and I have established a forest trust relationship with Active Directory, everything looks good, after following this guide http://www.freeipa.org/index. Php? Title = Squid_Integration_with_FreeIPA_using_Single_Sign_On &

[Freeipa-users] Unable to add attributes to default user schema

2016-12-26 Thread Carlos Raúl Laguna
Hello everyone, I am trying to add a new attribute ¨mailQuota¨ to the default user schema, so far i add the objectclass mailrecipient to the default user objectclasses which contain this specific atribute but so far i only capable to add the attribute manually with user-mod

Re: [Freeipa-users] IPA-AD Trust unable to resolve child domain

2016-10-20 Thread Carlos Raúl Laguna
Thanks for the clarification. Regards 2016-10-20 14:23 GMT-04:00 Alexander Bokovoy <aboko...@redhat.com>: > On to, 20 loka 2016, Carlos Raúl Laguna wrote: > >> Hi Alexander, >> I do belive is a DNS problem, the command failing are >> >> host -t srv _ldap._

Re: [Freeipa-users] IPA-AD Trust unable to resolve child domain

2016-10-20 Thread Carlos Raúl Laguna
nd it work as expected, i will setup dnssec on the windows side and enable dns validation once more on IPA to see if can get the same outcome. Thanks for you answer 2016-10-20 10:10 GMT-04:00 Alexander Bokovoy <aboko...@redhat.com>: > On to, 20 loka 2016, Carlos Raúl Laguna wrote:

[Freeipa-users] IPA-AD Trust unable to resolve child domain

2016-10-20 Thread Carlos Raúl Laguna
Hello everyone, Both server are fresh install 2008r2 and fedora 24 server freeipa 4.3.2 as documentation explain in http://www.freeipa.org/page/Active_Directory_trust_setup#If_AD_is_subdomain_of_IPA however the server is unable to resolve any record from my child domain, i found this bug

Re: [Freeipa-users] Fwd: NetworkError : invalid continuation byte with utf8 codec

2016-01-06 Thread Carlos Raúl Laguna
Happy new year to all, just to point out that this also affect Fedora23 Free-IPA 4.2.0 and 4.3.0 from corps. locale are set to es_ES.UTF-8. Regards 2016-01-05 23:32 GMT-05:00 Fraser Tweedale : > On Mon, Jan 04, 2016 at 03:13:43PM +0100, Domineaux Philippe wrote: > > Hello,

[Freeipa-users] Unable to install ipa-server-trust-ad

2015-07-22 Thread Carlos Raúl Laguna
Hello everyone, i am using fedora 22 server with copr repos enabled for freeipa 4.2, according with the documentation i execute sudo dnf install -y *ipa-server *ipa-server-trust-ad bind bind-dyndb-ldap however the following error occurs Error: package freeipa-server-trust-ad-4.1.4-2.fc22.x86_64

Re: [Freeipa-users] Single mail deployment i an FreeIPA-WindowsAD scenario.

2015-05-28 Thread Carlos Raúl Laguna
Thanks for the clarifications, one more question, does FreeIPA support partial or fractional replications? Regards 2015-05-28 0:25 GMT-04:00 Alexander Bokovoy aboko...@redhat.com: On Wed, 27 May 2015, Carlos Raúl Laguna wrote: Hello Martin, Alexander Seem that the time shift is large

Re: [Freeipa-users] Single mail deployment i an FreeIPA-WindowsAD scenario.

2015-05-27 Thread Carlos Raúl Laguna
/2015 07:36 PM, Carlos Raúl Laguna wrote: Hello Martin, The email deployment it is a groupware in this scenario Kolab, kolab use 389 ad as main backend and it require some kolab ldap specific attribute to work properly, this is not a problem in fact is quite easy to use freeipa as kolab

Re: [Freeipa-users] Single mail deployment i an FreeIPA-WindowsAD scenario.

2015-05-26 Thread Carlos Raúl Laguna
Hello Martin, The email deployment it is a groupware in this scenario Kolab, kolab use 389 ad as main backend and it require some kolab ldap specific attribute to work properly, this is not a problem in fact is quite easy to use freeipa as kolab backend, so far so good but the romance only get

[Freeipa-users] Single mail deployment i an FreeIPA-WindowsAD scenario.

2015-05-25 Thread Carlos Raúl Laguna
How i can use a single backend for a email deployment in such scenario ? Since i am using forest trust, therefore users are not present in one place. Regards -- Manage your subscription for the Freeipa-users mailing list: https://www.redhat.com/mailman/listinfo/freeipa-users Go to

Re: [Freeipa-users] Single mail deployment i an FreeIPA-WindowsAD scenario.

2015-05-25 Thread Carlos Raúl Laguna
Any ideas how to overcome this? Winsync may be a better approach for us instead of cross-trust.Regards 2015-05-25 13:06 GMT-04:00 Carlos Raúl Laguna carlosla1...@gmail.com: How i can use a single backend for a email deployment in such scenario ? Since i am using forest trust, therefore users

Re: [Freeipa-users] [[Test-Announce] Fedora 22 Final status is Go, release on May 26, 2015]

2015-05-22 Thread Carlos Raúl Laguna
Hi Alexander Great news, does this also mean that user created in freeipa are self created/synchronized in the windows ad ? Regtards 2015-05-22 15:00 GMT-04:00 Alexander Bokovoy aboko...@redhat.com: Hi, As per attached message, Fedora 22 final release will come to life next week. If you are

Re: [Freeipa-users] [[Test-Announce] Fedora 22 Final status is Go, release on May 26, 2015]

2015-05-22 Thread Carlos Raúl Laguna
:00 Alexander Bokovoy aboko...@redhat.com: On Fri, 22 May 2015, Carlos Raúl Laguna wrote: Hi Alexander Great news, does this also mean that user created in freeipa are self created/synchronized in the windows ad ? Regtards With cross-forest trust we don't synchronize anything to AD. Think

Re: [Freeipa-users] Migration from FreeIPA-Windows to FreeIPA-samba4

2014-10-13 Thread Carlos Raúl Laguna
2014-10-09 18:12 GMT-04:00 Dmitri Pal d...@redhat.com: On 10/09/2014 04:38 PM, Carlos Raúl Laguna wrote: Hello to everyone, for some time now i have been pretty much stalking the samba project site, looking forward to forest trust and it seem that they introduced new functions to support

[Freeipa-users] Migration from FreeIPA-Windows to FreeIPA-samba4

2014-10-09 Thread Carlos Raúl Laguna
Hello to everyone, for some time now i have been pretty much stalking the samba project site, looking forward to forest trust and it seem that they introduced new functions to support trust domains https://download.samba.org/pub/samba/rc/WHATSNEW-4.2.0rc1.txt i guess i an future will be possible.

Re: [Freeipa-users] FreeIPA customized for Kolab

2014-07-05 Thread Carlos Raúl Laguna
Will do, need to make a proper guide first.Thanks to all. Regards 2014-07-04 3:26 GMT-04:00 Petr Spacek pspa...@redhat.com: On 4.7.2014 00:49, Carlos Raúl Laguna wrote: In cn=config a extensibleObject whit a domainRelatedObject and aci (require by kolab) Not sure what this means - does

[Freeipa-users] FreeIPA customized for Kolab

2014-07-03 Thread Carlos Raúl Laguna
Hello everyone, for some time i was trying to make Kolab Groupwere to work with FreeIPA and after some research is now working. However the modification made in FreeIPA makes me wonder if some how limit the functions of the software. Changes Made: Creation of OU=Groups (Don't want to mix

Re: [Freeipa-users] FreeIPA customized for Kolab

2014-07-03 Thread Carlos Raúl Laguna
for your answer. Regards 2014-07-03 18:12 GMT-04:00 Rich Megginson rmegg...@redhat.com: On 07/03/2014 04:09 PM, Carlos Raúl Laguna wrote: Hello everyone, for some time i was trying to make Kolab Groupwere to work with FreeIPA and after some research is now working. Great! However