Unfortunately you are right :) update went fine via host principal >[root@host-01 ~]# klist >Ticket cache: KEYRING:persistent:0:krb_ccache_4CnGVjr >Default principal: host/host-01.test-krb1.novalocal@TEST-KRB1.NOVALOCAL > >Valid starting Expires Service principal >18.09.2023 04:22:42 19.09.2023 04:22:42 >krbtgt/TEST-KRB1.NOVALOCAL@TEST-KRB1.NOVALOCAL > >[root@host-01 ~]# nsupdate -g dns_update.txt >Outgoing update query: >;; ->>HEADER<<- opcode: UPDATE, status: NOERROR, id: 0 >;; flags:; ZONE: 0, PREREQ: 0, UPDATE: 0, ADDITIONAL: 0 >;; UPDATE SECTION: >host-01.test-krb1.novalocal. 0 ANY A > >Outgoing update query: >;; ->>HEADER<<- opcode: UPDATE, status: NOERROR, id: 0 >;; flags:; ZONE: 0, PREREQ: 0, UPDATE: 0, ADDITIONAL: 0 >;; UPDATE SECTION: >host-01.test-krb1.novalocal. 0 ANY AAAA > >Outgoing update query: >;; ->>HEADER<<- opcode: UPDATE, status: NOERROR, id: 0 >;; flags:; ZONE: 0, PREREQ: 0, UPDATE: 0, ADDITIONAL: 0 >;; UPDATE SECTION: >host-01.test-krb1.novalocal. 1200 IN A 172.28.19.97
I guess the only way right now to follow source code of ipa-client-install command and debug what is going on with more precision. _______________________________________________ FreeIPA-users mailing list -- freeipa-users@lists.fedorahosted.org To unsubscribe send an email to freeipa-users-le...@lists.fedorahosted.org Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedorahosted.org/archives/list/freeipa-users@lists.fedorahosted.org Do not reply to spam, report it: https://pagure.io/fedora-infrastructure/new_issue