[Freeipa-users] Re: Abstracted NTP server configuration

2019-01-14 Thread Andrew Bychkov via FreeIPA-users
Hello! How is the patch checking going? ___ FreeIPA-users mailing list -- freeipa-users@lists.fedorahosted.org To unsubscribe send an email to freeipa-users-le...@lists.fedorahosted.org Fedora Code of Conduct: https://getfedora.org/code-of-conduct.html Li

[Freeipa-users] Re: Login WebUI fails

2019-01-14 Thread Robbie Harwood via FreeIPA-users
74cmonty via FreeIPA-users writes: > let me share some additional information on this issue before filing a bug. > > I checked the log files for errors but didn't detect anything. Then I > verified if any service was failing, but everything was running. > > After this I tried to restart ipa.ser

[Freeipa-users] Re: Login WebUI fails

2019-01-14 Thread Robbie Harwood via FreeIPA-users
74cmonty via FreeIPA-users writes: > let me share some additional information on this issue before filing a bug. > > I checked the log files for errors but didn't detect anything. Then I > verified if any service was failing, but everything was running. > > After this I tried to restart ipa.ser

[Freeipa-users] Re: Login WebUI fails

2019-01-14 Thread Robbie Harwood via FreeIPA-users
74cmonty via FreeIPA-users writes: > let me share some additional information on this issue before filing a bug. > > I checked the log files for errors but didn't detect anything. Then I > verified if any service was failing, but everything was running. > > After this I tried to restart ipa.ser

[Freeipa-users] Re: Login WebUI fails

2019-01-14 Thread 74cmonty via FreeIPA-users
Hi Robbie, let me share some additional information on this issue before filing a bug. I checked the log files for errors but didn't detect anything. Then I verified if any service was failing, but everything was running. After this I tried to restart ipa.service and this failed with an error me

[Freeipa-users] ipa services continue to fail

2019-01-14 Thread Andrew Meyer via FreeIPA-users
Currently in my environment I have 6 servers 2 in my local office and 2 in each region in AWS.  The AWS servers are all running CentOS 7.x with FreeIPA 4.5.x running on all 6.  The AWS servers are all t2.medium w/ unlimited turned on.  Occasionally we issues with all 6 where one of the processes

[Freeipa-users] Re: ManageIQ/Cloudforms integration

2019-01-14 Thread Rob Crittenden via FreeIPA-users
Sigbjorn Lie-Soland via FreeIPA-users wrote: > Hi list, > > > Is there a known repository with an existing ManageIQ/Cloudforms > Automate framework for FreeIPA? > > > I am primarily looking for the ability to create HBAC and SUDO rules as > part of the provisioning process. You may be able to

[Freeipa-users] Re: CentOS 7 ipa upgrade causes pki-tomcatd not to start CA

2019-01-14 Thread Marco Rhodes via FreeIPA-users
Jason, Yes, bad search filter there - apologies. This one is better: # ldapsearch -xLLL -D "cn=Directory Manager" -W -b ou=certificateprofiles,ou=ca,o=ipaca '(&(nsds5ReplConflict=*)(objectclass=ldapsubentry))' The base DN you want to specify is 'ou=certificateprofiles,ou=ca,o=ipaca'. This

[Freeipa-users] Re: orphan certificate key Issue

2019-01-14 Thread Florence Blanc-Renaud via FreeIPA-users
On 1/14/19 5:30 PM, Uzor Ide via FreeIPA-users wrote: Hello All, I upgraded our ipa server and after the upgrade ipa won't start again. further investigation shows that components of ipa starts but pki-tomcatd@pki-tomcat.service appears to be where the issue lies. checking the logs suggested

[Freeipa-users] Re: orphan certificate key Issue

2019-01-14 Thread Rob Crittenden via FreeIPA-users
Uzor Ide via FreeIPA-users wrote: > Hello All, > > I upgraded our ipa server and after the upgrade ipa won't start again. > further investigation shows that components of ipa starts > but pki-tomcatd@pki-tomcat.service appears to be where the issue lies. > checking the logs suggested that issue li

[Freeipa-users] orphan certificate key Issue

2019-01-14 Thread Uzor Ide via FreeIPA-users
Hello All, I upgraded our ipa server and after the upgrade ipa won't start again. further investigation shows that components of ipa starts but pki-tomcatd@pki-tomcat.service appears to be where the issue lies. checking the logs suggested that issue lies in the certificate database. on checking th

[Freeipa-users] Re: Login WebUI fails

2019-01-14 Thread Robbie Harwood via FreeIPA-users
74cmonty via FreeIPA-users writes: > Solved. > /var/log was 100% full. I'm glad to hear it's solved! However, /var/log filling up shouldn't fail authentication (and definitely not with *that* error message). Do you mind filing a bug report? Thanks, --Robbie signature.asc Description: PGP s

[Freeipa-users] Ldap authentication

2019-01-14 Thread Alex Severov via FreeIPA-users
Hello. I have ipa with ad integration. I want to install nextcloud with ldap authentication. I used this document    https://www.freeipa.org/page/Owncloud_Authentication_against_FreeIPA   I changed ldap tree to compat. But I can't login in nextcloud with ad user password! Wat's wrong? -- Alex S

[Freeipa-users] Re: Peer certificate cannot be authenticated with given CA certificates

2019-01-14 Thread Petr Benas via FreeIPA-users
It looks like my response got posted as a new thread https://lists.fedorahosted.org/archives/list/freeipa-users@lists.fedorahosted.org/thread/OD5HPSHEYKMRJ2NRCOT76SCNXDMAK6XO/ ___ FreeIPA-users mailing list -- freeipa-users@lists.fedorahosted.org To unsu