#5965 conncheck in ipa-ca-install running on replica asks for host/principal "password"
Closed: Fixed None Opened 7 years ago by pspacek.

Connection check in ipa-ca-install running on replica requires password for host/vm-046. This is really weird because user almost certainly cannot enter it.

Presence of admin ticket does not change anything.

# klist
Ticket cache: KEYRING:persistent:0:krb_ccache_N7P4JUT
Default principal: admin@DOM-058-082.ABC.IDM.LAB.ENG.BRQ.REDHAT.COM

Valid starting     Expires            Service principal
06/16/16 15:35:16  06/17/16 15:35:14  krbtgt/DOM-058-082.ABC.IDM.LAB.ENG.BRQ.REDHAT.COM@DOM-058-082.ABC.IDM.LAB.ENG.BRQ.REDHAT.COM
[root@vm-046 ipa]# ipa-ca-install 
WARNING: yacc table file version is out of date
Directory Manager (existing master) password:

Run connection check to master
host/vm-046.abc.idm.lab.eng.br@vm-058-082.abc.idm.lab.eng.brq.redhat.com's password: 
Connection check failed!
Please fix your network settings according to error messages above.
If the check results are not valid it can be skipped with --skip-conncheck parameter.

Option --skip-conncheck allows me to continue but conncheck is not done.


master:

  • 0db48e4 Fix to ipa-ca-install asking for host principal password

Metadata Update from @pspacek:
- Issue assigned to stlaz
- Issue set to the milestone: FreeIPA 4.4

7 years ago

Login to comment on this ticket.

Metadata