[Freeipa-devel] ipa-server-install Unable to set admin password

Rob Crittenden rcritten at redhat.com
Mon Jan 11 15:31:10 UTC 2010


Dmitri Pal wrote:
> Rob Crittenden wrote:
>> tatiana philippova wrote:
>>> also  noticed next in
>>> /var/log/dirsrv/slapd-INTERNAL-BULLETIN-NET/errors :
>>> [08/Jan/2010:10:02:38 +1300] ipa_pwd_extop - krb5_c_string_to_key
>>> failed [Bad encryption type]
>>> [08/Jan/2010:10:02:38 +1300] ipa_pwd_extop - key encryption/encoding
>>> failed
>> Well, that explains why the admin password wasn't set. Simo, any
>> thoughts?
>>
>> ipa_pwd_extop is the 389-ds plugin we use to keep the LDAP password
>> and the kerberos principal key in sync.
>>
>> What version of krb5-server do you have installed? rpm -q krb5-server
> 
> If it is F12 the Kerberos version should be 1.7.
> Can it be that we have an incompatibility with 1.7 in our plugin?

Perhaps but I've been unable to reproduce this myself. It works fine in 
F12 for me.

rob




More information about the Freeipa-devel mailing list