[Freeipa-users] Re: UPN group name@domain in id output

2021-03-23 Thread Anthony Joseph Messina via FreeIPA-users
On Monday, March 22, 2021 12:32:37 PM CDT Alfred Victor via FreeIPA-users wrote: > Hi FreeIPA, > > It seems like something has changed but I can't figure out quite what and a > colleague is out sick. When I perform id lookup on a user, everything shows > as usern...@domain.com format. Can anyone

[Freeipa-users] Re: FreeIPA Upgrade F31 -> F32: usr/lib/api/apiutil.c Could not open /run/lock/opencryptoki/LCK..APIlock

2020-05-10 Thread Anthony Joseph Messina via FreeIPA-users
On Sunday, May 10, 2020 1:32:14 PM CDT Alexander Bokovoy wrote: > On la, 09 touko 2020, Anthony Joseph Messina via FreeIPA-users wrote: > >On Saturday, May 9, 2020 3:17:25 PM CDT Anthony Joseph Messina via FreeIPA- users wrote: > >> After upgrading FreeIPA from F31 to F32, on s

[Freeipa-users] Re: FreeIPA Upgrade F31 -> F32: usr/lib/api/apiutil.c Could not open /run/lock/opencryptoki/LCK..APIlock

2020-05-09 Thread Anthony Joseph Messina via FreeIPA-users
On Saturday, May 9, 2020 3:17:25 PM CDT Anthony Joseph Messina via FreeIPA-users wrote: > After upgrading FreeIPA from F31 to F32, on startup I now see a lot of these > errors from certmonger, ns-slapd, java, etc. > > May 08 17:57:28 certmonger[38]: usr/lib/api/apiutil.c Could not

[Freeipa-users] FreeIPA Upgrade F31 -> F32: usr/lib/api/apiutil.c Could not open /run/lock/opencryptoki/LCK..APIlock

2020-05-09 Thread Anthony Joseph Messina via FreeIPA-users
After upgrading FreeIPA from F31 to F32, on startup I now see a lot of these errors from certmonger, ns-slapd, java, etc. May 08 17:57:28 certmonger[38]: usr/lib/api/apiutil.c Could not open /run/lock/opencryptoki/LCK..APIlock May 08 17:57:30 ns-slapd[67]: usr/lib/api/apiutil.c Could not

[Freeipa-users] Re: FreeIPA/PKI CA/KRA Subsystem Certificate Renewal Failure (not yet expired)

2020-01-12 Thread Anthony Joseph Messina via FreeIPA-users
On Sunday, January 12, 2020 3:11:57 PM CST Anthony Joseph Messina via FreeIPA- users wrote: > I am running into trouble with certmonger renewal of KRA subsystem certs on > the renewal master, and CA/KRA subsystem certs on the replica. Any help is > appreciated as my renewal window ends

[Freeipa-users] FreeIPA/PKI CA/KRA Subsystem Certificate Renewal Failure (not yet expired)

2020-01-12 Thread Anthony Joseph Messina via FreeIPA-users
I am running into trouble with certmonger renewal of KRA subsystem certs on the renewal master, and CA/KRA subsystem certs on the replica. Any help is appreciated as my renewal window ends in 8 days. This is Fedora 31 with freeipa-server-4.8.4-2.fc31.x86_64 on both master and replica. These s

[Freeipa-users] Re: Announcing freeIPA 4.7.0

2018-08-26 Thread Anthony Joseph Messina via FreeIPA-users
On Saturday, August 18, 2018 2:40:30 PM CDT Rob Crittenden wrote: > Anthony Joseph Messina via FreeIPA-users wrote: > > On Friday, August 17, 2018 1:34:03 PM CDT Rob Crittenden wrote: > >> Anthony Joseph Messina via FreeIPA-users wrote: > >>> I have two full (DNS, CA

[Freeipa-users] Re: Announcing freeIPA 4.7.0

2018-08-17 Thread Anthony Joseph Messina via FreeIPA-users
On Friday, August 17, 2018 1:34:03 PM CDT Rob Crittenden wrote: > Anthony Joseph Messina via FreeIPA-users wrote: > > I have two full (DNS, CA, KRA) FreeIPA instances still running F27 for > > stability based on the recommendations at the time of the F28 release. Is > > *thi

[Freeipa-users] Re: Announcing freeIPA 4.7.0

2018-08-16 Thread Anthony Joseph Messina via FreeIPA-users
On Monday, July 23, 2018 12:43:53 PM CDT Rob Crittenden via FreeIPA-users wrote: > The FreeIPA team would like to announce FreeIPA 4.7.0 release! > > It can be downloaded from http://www.freeipa.org/page/Downloads. > > == Highlights in 4.7.0 == > > === Enhancements === > > mod_ssl = >

[Freeipa-users] Remove IPA server from list of NTP servers?

2017-10-03 Thread Anthony Joseph Messina via FreeIPA-users
I inadvertently forgot to include --no-ntp when creating a FreeIPA-4.6 instance on F27 testing (in domain level 1). What is the proper way to remove the server from the list of NTP servers so it doesn't keep trying to start ntpd with ipactl start and so it doesn't keep adding the _ntp._udp DNS