Centralized user authentication breaks when Kerberos Armoring service on the Windows 2012R2 server is enabled.
Most should be fixed on SSSD side. This ticket is to track any work required on FreeIPA side.
Some Notes:
Requires Two-Way trust or a CCACHE with trusted credentials.
Linked to Bugzilla bug: https://bugzilla.redhat.com/show_bug.cgi?id=1285162 (Red Hat Enterprise Linux 7)
Assigning to Alexander to look how Windows do it.
Metadata Update from @pvoborni: - Issue assigned to abbra - Issue set to the milestone: FreeIPA 4.5 backlog
the original bug was closed.
Metadata Update from @abbra: - Issue close_status updated to: wontfix - Issue set to the milestone: None (was: FreeIPA 4.5 backlog) - Issue status updated to: Closed (was: Open)
Login to comment on this ticket.