[Freeipa-devel] installer problem

Rob Crittenden rcritten at redhat.com
Fri Jul 13 13:22:49 UTC 2007


Rob Crittenden wrote:
> Rob Crittenden wrote:
>> Some problems with the install.
>>
>> # /usr/sbin/ipa-server-install -r FREEIPA.ORG -a ipa -p freeipa -m 
>> ipafree
>> Traceback (most recent call last):
>>   File "/usr/sbin/ipa-server-install", line 70, in <module>
>>     main()
>>   File "/usr/sbin/ipa-server-install", line 61, in main
>>     ds.create_instance(options.ds_user, options.realm_name, 
>> options.host_name, options.password)
>>   File "/usr/lib/python2.5/site-packages/ipa/dsinstance.py", line 103, 
>> in create_instance
>>     self.__create_ds_user()
>>   File "/usr/lib/python2.5/site-packages/ipa/dsinstance.py", line 135, 
>> in __create_ds_user
>>     pwd.getpwnam(self.ds_user)
>> TypeError: getpwnam() argument 1 must be string, not None
>>
>> Added: -u fdsuser and the install continued until it seems to have hung.
>>
>> I have 3 processes related to this:
>>
>> root      3147  3027  0 21:43 pts/2    00:00:00 /usr/bin/python -E 
>> /usr/sbin/ipa-server-install -r FREEIPA.ORG -a ipa.greyoak.com -p 
>> freeipa -m freeipa -u fdsuser
>> fdsuser   3329     1  0 21:43 ?        00:00:00 /usr/sbin/ns-slapd -D 
>> /etc/fedora-ds/slapd-6a7ff2dc-30e2-11dc-a730-000c297b5509 -i 
>> /var/run/fedora-ds/slapd-6a7ff2dc-30e2-11dc-a730-000c297b5509.pid -w 
>> /var/run/fedora-ds/slapd-6a7ff2dc-30e2-11dc-a730-000c297b5509.startpid
>> root      3399  3147  0 21:43 pts/2    00:00:00 
>> /usr/kerberos/sbin/kdb5_ldap_util -D 
>> uid=kdc,cn=kerberos,dc=freeipa,dc=org -w FPRYXRFYUKBV create -s -r 
>> FREEIPA.ORG -subtrees dc=freeipa,dc=org -sscope sub
>>
>> An strace shows krb5_ldap_util blocking on a read.
>>
>> Do we have an uninstall to back things out or is this not needed?
>>
> 
> Got a little further. kdb5_ldap_util is blocking waiting for a password 
> ala:
> 
> Initializing database for realm 'FREEIPA.ORG'
> You will be prompted for the database Master Password.
> It is important that you NOT FORGET this password.
> Enter KDC database master key:
> Re-enter KDC database master key to verify:
> 
> I entered the passwords but the KDC failed to start and logged the error:
> 
> krb5kdc: Unable to access Kerberos database - while initializing 
> database for realm FREEIPA.ORG
> 
> Not sure if this is a password issue or something else.
> 
> rob
>

And I'm replying to myself for the last time.

I think the problem was that /var/kerberos/krb5kdc/ldappwd had 3 entries 
in it from previous failed attempts. I removed that file and the install 
finally succeeded.

rob
-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/x-pkcs7-signature
Size: 3245 bytes
Desc: S/MIME Cryptographic Signature
URL: <http://listman.redhat.com/archives/freeipa-devel/attachments/20070713/f8cc2c8e/attachment.bin>


More information about the Freeipa-devel mailing list