[Freeipa-devel] [PATCH 0016] Adds port to connection error message in ipa-client-install

Tomas Babej tbabej at redhat.com
Wed Oct 3 13:31:50 UTC 2012


On 10/02/2012 08:48 PM, Rob Crittenden wrote:
> Tomas Babej wrote:
>> On 09/26/2012 09:32 PM, Rob Crittenden wrote:
>>> Tomas Babej wrote:
>>>> Hi,
>>>>
>>>> Connection error message in ipa-client-install now warns the user
>>>> about the need of opening 389 port for directory server.
>>>>
>>>> https://fedorahosted.org/freeipa/ticket/2816
>>>>
>>>> I think this can be pushed as a one-liner.
>>>
>>> I think we should list all ports that are required for client 
>>> enrollment.
>>>
>>> From my calculations we need at a minimum tcp ports 80 and 389, either
>>> or both udp/tcp for port 88 and if NTP is enabled 123 udp for
>>> enrollment alone. The NTP failure won't cause enrollment to fail
>>> though, so we may be able to skip that.
>>>
>>> Similarly 464 should be enabled but we don't use it during enrollment.
>>>
>>> rob
>> I improved the error message. Please check if there are any issues.
>>
>> Thanks
>>
>> Tomas
>
> This only works if port 389 is blocked, not 88 or 80.
>
> rob
I tested and added the port configuration info message at the appropriate
places for TCP 80, 88, 389 ports. I also added the info message at the end
of installation output. Please consider if you agree with this approach.

Tomas
-------------- next part --------------
A non-text attachment was scrubbed...
Name: freeipa-tbabej-0016-3-Adds-port-to-connection-error-message-in-ipa-client-.patch
Type: text/x-patch
Size: 4105 bytes
Desc: not available
URL: <http://listman.redhat.com/archives/freeipa-devel/attachments/20121003/92a29749/attachment.bin>


More information about the Freeipa-devel mailing list