ipa-replica-prepare adds the host and a DNS record for it. It takes some time before this propagates to Bind.
ipa-replica-prepare
ipa-replica-install does a connection check, which (if IPA manages DNS) uses the record created above.
ipa-replica-install
If replica-install is run immediately after replica-prepare (e.g. in automated installations), the DNS record may not yet exist, and the installation will fail.
Suggested solution: At the end of ipa-replica-prepare, wait until the replica's hostname is resolvable. Say "this check may be safely interrupted if the DNS record will be added later". Add an option (--no-wait-for-dns) to skip the wait.
Please note that this is useful even for installations where DNS is managed outside of IPA. It:
master:
ipa-4-1:
ipa-4-0:
Metadata Update from @pviktori: - Issue assigned to pviktori - Issue set to the milestone: FreeIPA 4.0.4
Login to comment on this ticket.