[Freeipa-users] Re: Help troubleshooting ipa-upgrade

2021-05-05 Thread John Obaterspok via FreeIPA-users
On Wed May 5th 2021 at 16:37 Rob Crittenden wrote: > > John Obaterspok via FreeIPA-users wrote: > > On tue may 4th 2021 at 15:25 Rob Crittenden wrote: > >> > >> Does your CA otherwise start? You can pass --skip-version-check to > >> ipactl to skip the ve

[Freeipa-users] Re: Help troubleshooting ipa-upgrade

2021-05-04 Thread John Obaterspok via FreeIPA-users
On tue may 4th 2021 at 15:25 Rob Crittenden wrote: > > Does your CA otherwise start? You can pass --skip-version-check to > ipactl to skip the version check and just start the services. > YES! It started just fine with --skip-version-check YES! I have managed to get it upgraded. It seems to be so

[Freeipa-users] Help troubleshooting ipa-upgrade

2021-05-03 Thread John Obaterspok via FreeIPA-users
Hi, I have been trying now for a month getting ipa-upgrade going on my single host IPADOM. Any idea what to do would be greatly appreciated -- ipaupgrade log -- 2021-05-04T04:25:02Z DEBUG args=['/bin/systemctl', 'stop', 'dirsrv@IPADOM-LAN.service'] 2021-05-04T04:25:06Z DEBUG Process finished, ret

[Freeipa-users] Re: Another 4.8.7 failed upgrade

2021-02-02 Thread John Obaterspok via FreeIPA-users
Den tis 2 feb. 2021 kl 22:02 skrev Rob Crittenden : > > Do you remember what values you changed? Take this with a grain of salt as I have no idea what keys I changed. But, I had the following in my vim jumplist :) /etc/sysconfig/pki/tomcat/pki-tomcat/ca/deployment.cfg pki_clone_uri= /etc/pki/pki

[Freeipa-users] Re: Another 4.8.7 failed upgrade

2021-02-01 Thread John Obaterspok via FreeIPA-users
Den fre 22 jan. 2021 kl 09:54 skrev John Obaterspok : > > Hi, > > I'm stuck since about a week when I updated to latest ipa-server. It > seems to be the same problem as Ian had ("FreeIPA centos8 update > Failed to authenticate to CA REST API"). He seem to resolve this using > a replicate which I do

[Freeipa-users] Another 4.8.7 failed upgrade

2021-01-22 Thread John Obaterspok via FreeIPA-users
Hi, I'm stuck since about a week when I updated to latest ipa-server. It seems to be the same problem as Ian had ("FreeIPA centos8 update Failed to authenticate to CA REST API"). He seem to resolve this using a replicate which I dont have. Any ideas on how I get this to work? ipa-server-4.8.7-13

[Freeipa-users] Fwd: Error during getcert request

2017-07-22 Thread John Obaterspok via FreeIPA-users
Hi, I need to create a new certificate for my Asus router. The router is not part of freeipa domain so I need to manually update the certificate when it expires. getcert request -k /etc/pki/router_private -f /etc/pki/router_cert -D router.my.lan -N "cn=router.my.lan" -K http/router.my.lan -c IPA