[Freeipa-users] Re: FreeIPA centos8 update Failed to authenticate to CA REST API

2021-01-15 Thread Ian Willis via FreeIPA-users
Hi All, Given the fact that there haven't been any responses to this issue it would appear that the options are limited to the following approach. Given the current state and the fact that the CA master is the one with the issues. Would the best approach be to 1 Build a new replica with the curr

[Freeipa-users] Re: Trusting an AD synchronized towards Azure AD

2021-01-15 Thread Antoine Gatineau via FreeIPA-users
Thanks for the quick and clear response ⁣Télécharger BlueMail pour Android ​ Le 15 janv. 2021 à 19:43, à 19:43, "Vinícius Ferrão via FreeIPA-users" a écrit: >If I understood correct you have a local Windows Server with AD role up >and running and also have Azure AD Sync installed to sync data f

[Freeipa-users] Re: Trusting an AD synchronized towards Azure AD

2021-01-15 Thread Monkey Bizness via FreeIPA-users
Indeed that is the scenario. My fear is that the azure connect plugin would bring some behavoral change to the way the local AD would respond to auth requests comming from freeipa. On Fri, 2021-01-15 at 18:43 +, Vinícius Ferrão wrote: > If I understood correct you have a local Windows Server

[Freeipa-users] Re: Trusting an AD synchronized towards Azure AD

2021-01-15 Thread Vinícius Ferrão via FreeIPA-users
If I understood correct you have a local Windows Server with AD role up and running and also have Azure AD Sync installed to sync data from local AD to the cloud. If this is your scenario I have this running without any issues. FreeIPA does the Trust with local AD. Sent from my iPhone > On 1

[Freeipa-users] Trusting an AD synchronized towards Azure AD

2021-01-15 Thread Monkey Bizness via FreeIPA-users
Hi all, I have seen that FreeIPA can't integrate with Azure AD directly. Which is not that surprising from what I understand of it's internals. In the case of a trust with a local AD that is itself synchronized with azure, would it work? My instinct tells me it should but anything could happen behi

[Freeipa-users] Re: ipa-replica-install fails when the forwarder address is a link-local IP address

2021-01-15 Thread Rob Crittenden via FreeIPA-users
Ganesh Kumar via FreeIPA-users wrote: > Hi, > > I am setting up a 2 node FreeIPA system. One primary and the other is a > replica. I want the replica to use the cloud DNS nameserver as a forwarder. > In Google cloud, 169.254.169.254 is the nameserver. But when this is used as > a forwarder I ge