Re: [Freeipa-users] Replica cannot be reinitialized after upgrade

2017-05-15 Thread Maciej Drobniuch
, API_VERSION: 2.213 -- Best regards Maciej Drobniuch Network Security Engineer Collective-Sense,LLC On Thu, May 11, 2017 at 6:53 PM, Goran Marik <gor...@ecobee.com> wrote: > Hi, > > After an upgrade to Centos 7.3.1611 with “yum update", we started seeing > the followi

Re: [Freeipa-users] Jenkins integration?

2017-03-24 Thread Maciej Drobniuch
wrote: > On pe, 24 maalis 2017, Maciej Drobniuch wrote: > >> I see now what you mean. >> >> The SSHA decoding is handled on the client side by using acegi not on the >> ldap server side... >> >> Am I inline with this? >> > No, you are not. There are

Re: [Freeipa-users] Jenkins integration?

2017-03-24 Thread Maciej Drobniuch
. Thanks Alex. On Fri, Mar 24, 2017 at 11:57 AM, Alexander Bokovoy <aboko...@redhat.com> wrote: > On pe, 24 maalis 2017, Maciej Drobniuch wrote: > >> Hi Alex, >> >> Even while using LDAP a browser (jxplorer) I can not login with the >> following user DN >>

Re: [Freeipa-users] Jenkins integration?

2017-03-24 Thread Maciej Drobniuch
doing wrong? Thanks! On Fri, Mar 24, 2017 at 10:46 AM, Alexander Bokovoy <aboko...@redhat.com> wrote: > On pe, 24 maalis 2017, Maciej Drobniuch wrote: > >> Hi All, >> >> I'm trying to integrate Freeipa with jenkins and ldap auth plugin. >> >> The thing

Re: [Freeipa-users] Jenkins integration?

2017-03-24 Thread Maciej Drobniuch
already available. > > > Anyway, I think we are distancing away from the original topic. > > Especially since we both can only make rough assumptions about > requirements and > operational constraints of the original poster. > > Ciao, Michael. > > > -- > Manage your subscription for the Freeipa-users mailing list: > https://www.redhat.com/mailman/listinfo/freeipa-users > Go to http://freeipa.org for more info on the project > -- Best regards Maciej Drobniuch Network Security Engineer Collective-Sense,LLC -- Manage your subscription for the Freeipa-users mailing list: https://www.redhat.com/mailman/listinfo/freeipa-users Go to http://freeipa.org for more info on the project

Re: [Freeipa-users] 2FA and AllowNTHash

2017-01-05 Thread Maciej Drobniuch
to use pass+otp only instead of both (Password+ pass+otp) for particular hosts. So for example users from hosts X can login with OTP only. Thanks for help! On Tue, Jan 3, 2017 at 7:02 PM, Brian Candler <b.cand...@pobox.com> wrote: > On 03/01/2017 15:28, Maciej Drobniuch wrote: > >&

Re: [Freeipa-users] LDAP - Load Balancer - SSL cert with SAN

2017-01-03 Thread Maciej Drobniuch
gineer | CROSSCHX* > 614-741-5475 <(614)%20741-5475> > mike.plemm...@crosschx.com > www.crosschx.com > > On Tue, Jan 3, 2017 at 10:14 AM, Maciej Drobniuch <m...@collective-sense.com > > wrote: > >> Hello Mike, >> >> I don't know if I'm aligned with your pro

[Freeipa-users] 2FA and AllowNTHash

2017-01-03 Thread Maciej Drobniuch
but still make freeradius work with ldap, so when it asks for users hash it gets one. Freeradius ldap mod snippet: "base_dn = "cn=users,cn=accounts,dc=cs,dc=com"" Thank You -- Best regards Maciej Drobniuch Network Security Engineer Collective-Sense,LLC -- Manage your subscrip

Re: [Freeipa-users] LDAP - Load Balancer - SSL cert with SAN

2017-01-03 Thread Maciej Drobniuch
r | CROSSCHX* > 614-741-5475 <(614)%20741-5475> > mike.plemm...@crosschx.com > www.crosschx.com > > -- > Manage your subscription for the Freeipa-users mailing list: > https://www.redhat.com/mailman/listinfo/freeipa-users > Go to http://freeipa.org for more in

Re: [Freeipa-users] DNS reverse zone is not managed by this server

2016-12-27 Thread Maciej Drobniuch
. Thank you very much for your time and help with this! Cheers! M. On Tue, Dec 27, 2016 at 1:35 PM, Maciej Drobniuch <m...@collective-sense.com> wrote: > # dig soa 0.0.10.in-addr.arpa. > > ; <<>> DiG 9.9.4-RedHat-9.9.4-38.el7_3 <<>> soa 0.0.10.in-addr.a

Re: [Freeipa-users] DNS reverse zone is not managed by this server

2016-12-27 Thread Maciej Drobniuch
.1#53(127.0.0.1) ;; WHEN: wto gru 27 07:33:41 EST 2016 ;; MSG SIZE rcvd: 333 On Tue, Dec 27, 2016 at 1:28 PM, Martin Basti <mba...@redhat.com> wrote: > I just noticed previously you sent wrong dig, I need > > dig 0.0.10.in-addr.arpa. SOA instead of the A rtype > > > >

Re: [Freeipa-users] DNS reverse zone is not managed by this server

2016-12-27 Thread Maciej Drobniuch
# python -c 'from dns import resolver; a = resolver.query("0.0.10.in-addr.arpa.", "SOA", "IN"); print a.rrset.name' 0.0.10.in-addr.arpa. On Tue, Dec 27, 2016 at 1:09 PM, Martin Basti <mba...@redhat.com> wrote: > > > On 27.12.2016 13:04, Maciej D

Re: [Freeipa-users] DNS reverse zone is not managed by this server

2016-12-27 Thread Maciej Drobniuch
Dec 27 13:02:24 CET 2016 ;; MSG SIZE rcvd: 111 On Tue, Dec 27, 2016 at 12:24 PM, Martin Basti <mba...@redhat.com> wrote: > > > On 27.12.2016 12:07, Maciej Drobniuch wrote: > > Hi Martin! > > Thank you for your time! > > On Thu, Dec 22, 2016 at 1:41 PM, Martin Ba

Re: [Freeipa-users] DNS reverse zone is not managed by this server

2016-12-27 Thread Maciej Drobniuch
Hi Martin! Thank you for your time! On Thu, Dec 22, 2016 at 1:41 PM, Martin Basti <mba...@redhat.com> wrote: > > > On 22.12.2016 10:57, Maciej Drobniuch wrote: > > Hi Martin > > Appreciate your help! > > On Thu, Dec 22, 2016 at 10:48 AM, Marti

Re: [Freeipa-users] DNS reverse zone is not managed by this server

2016-12-22 Thread Maciej Drobniuch
Hi Martin Appreciate your help! On Thu, Dec 22, 2016 at 10:48 AM, Martin Basti <mba...@redhat.com> wrote: > > > On 22.12.2016 09:37, Maciej Drobniuch wrote: > > Hi Martin > > Thank you for reply. > > 1. The dig is returning proper PTR record. I've added i

Re: [Freeipa-users] DNS reverse zone is not managed by this server

2016-12-22 Thread Maciej Drobniuch
ts created in the reverse zone and it works 4. The resolv.conf file has only the IPA server IP addres/localhost added. Cheers! M. On Wed, Dec 21, 2016 at 5:43 PM, Martin Basti <mba...@redhat.com> wrote: > Hello all :) > > On 20.12.2016 01:33, Maciej Drobniuch wrote: > > Hi All!

[Freeipa-users] DNS reverse zone is not managed by this server

2016-12-19 Thread Maciej Drobniuch
the issue. VERSION: 4.4.0, API_VERSION: 2.213 CENTOS7 Linux freeipa1 3.10.0-229.el7.x86_64 #1 SMP Fri Mar 6 11:36:42 UTC 2015 x86_64 x86_64 x86_64 GNU/Linux Any help appreciated! -- Best regards Maciej Drobniuch Network Security Engineer Collective-sense LLC -- Manage your subscription for the Fre