[Freeipa-users] Remove ipa-client configuration

Rob Crittenden rcritten at redhat.com
Fri Nov 6 14:24:59 UTC 2009


Jesster Leight wrote:
> How i can remove ipa-client configuration ?
> I have client station on Fedora 11.
> 
> $ ipa-client-install
> Failed to verify that freeipa.example.com <http://freeipa.example.com> 
> is an IPA Server.
> This may mean that the remote server is not up or is not reachable
> due to network or firewall settings.
> 
> $ rm -f /var/kerberos/krb5kdc/kpasswd.keytab
> $ ipa-client-install --uninstall
> Restoring client configuration files
> Disabling client Kerberos and Ldap configurations
> The original nsswitch.conf configuration has been restored.
> You may need to restart services or reboot the machine.
> Do you want to reboot the machine? [no]: yes
> 
> Broadcast message from jess at satellite.example.com 
> <mailto:jess at satellite.example.com>
>         (/dev/pts/0) at 12:31 ...
> 
> The system is going down for reboot NOW!
> 
> After reboot same problem. Not working ipa-client-install.
> In what can be problem ? Maybe i forget some to remove ?

Do you have an AD domain using the same realm name you are using for IPA?

IPA uses DNS discovery to find the LDAP and kerberos server to use. It 
connects to the LDAP server it gets and verifies that it is an IPA LDAP 
server. Perhaps it is finding the wrong one?

rob
-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/x-pkcs7-signature
Size: 3245 bytes
Desc: S/MIME Cryptographic Signature
URL: <http://listman.redhat.com/archives/freeipa-users/attachments/20091106/bd2bf9c2/attachment.bin>


More information about the Freeipa-users mailing list