After the IPA server is prepared to accept AD trust the admin user has to run kinit again to get a TGT with the PAC. To make this easier for the admin pa-adtrust-install should ask for the password.
Additionally the password can be used the set the NT hash attribute for the admin to allow NTLM authentication.
It should be taken into account the unattended installations are possible as well.
Patch sent for review: https://www.redhat.com/archives/freeipa-devel/2012-August/msg00186.html
Committed to master: 191f514
Committed to 3.0: 51559a5
Moving closed RC1 tickets to Beta 3.
Rename "trusts" component to "Trusts" to achieve correct sorting.
Metadata Update from @sbose: - Issue assigned to abbra - Issue set to the milestone: FreeIPA 3.0 Beta 3
Login to comment on this ticket.