[Freeipa-users] Configuring Client SSH Access Failure

Michael Kang wxiluo at gmail.com
Sat Jan 23 03:34:28 UTC 2010


Hi all,

I'm trying to configure client ssh access on Fedora 12 and I can't access
ipaclient without password.

I'm following this document:
http://freeipa.org/docs/1.2/Client_Setup_Guide/en-US/html/sect-Client_Configuration_Guide-Configuring_Fedora_as_an_IPA_Client-Configuring_Client_SSH_Access.html

At the end of this document:

> The IPA client should now be fully configured to accept incoming SSHconnections and authenticate with the user's
> Kerberos credentials. Use the following command on another machine to test
> the configuration. This should succeed without asking for a password.
>
 # ssh admin at ipaclient.example.com

As I see it, another machine don't need to install any ipa software and it
can access ipaclient without password.

I have three Fedora machine:

   - ipa.example.com(IPA Server)
   - client.example.com(IPA Client)
   - node.example.com(another machine which was not installed ipa-client or
   ipa-server)

The client.example.com can access ipa.example.com without password. But the
node.example.com can't access client.example.com.

Do I misunderstand the document or configure incorrect?

Thanks,
Michael

-- 
Michael Kang(康上明学)
There is a giant asleep within every man. When the giant awakens,miracles
happen.

Personal blog: http://ufusion.org - United Fusion
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://listman.redhat.com/archives/freeipa-users/attachments/20100123/74c25084/attachment.htm>


More information about the Freeipa-users mailing list