[Freeipa-users] Sync with AD error

Sigbjorn Lie sigbjorn at nixtra.com
Sun Mar 13 22:43:46 UTC 2011


On 03/13/2011 08:35 PM, Simo Sorce wrote:
> On Fri, 11 Mar 2011 21:31:50 +0100
> Sigbjørn Lie<sigbjorn at nixtra.com>  wrote:
>
>>
>> On 03/11/2011 09:15 PM, Dmitri Pal wrote:
>>> On 03/11/2011 03:00 PM, Sigbjørn Lie wrote:
>>>> Hi,
>>>>
>>>> I just upgraded my FreeIPA @ F14 to 2.0.0.rc3, and attempted to
>>>> add a sync agreement with Active Directory.
>>> Did you upgrade in place or re-installed?
>>> The recent (a month ago or so) changes moved the location of the
>>> replication agreements.
>>> There were a lot of other changes in this area.
>>> We do not support smooth migration between beta and RCs that would
>>> have taken too much effort.
>>> Can you please try on a fresh install?
>>>
>>> Thank you
>>> Dmitri
>>>
>>>> Added CA certificate /root/testing-ca.cer to certificate database
>>>> for ipasrv01.ix.testing.com
>>>> ipa: INFO: AD Suffix is: DC=ad,DC=testing,DC=com
>>>> The user for the Windows PassSync service is
>>>> uid=passsync,cn=sysaccounts,cn=etc,dc=ix,dc=testing,dc=com
>>>> Windows PassSync entry exists, not resetting password
>>>> ipa: INFO: Added new sync agreement, waiting for it to become
>>>> ready . . . ipa: INFO: Replication Update in progress: FALSE:
>>>> status: 0 Replica acquired successfully: Incremental update
>>>> succeeded: start: 20110311195207Z: end: 20110311195207Z
>>>> ipa: INFO: Agreement is ready, starting replication . . .
>>>> ipa: INFO: Failed to create public entry for winsync replica
>>>> Starting replication, please wait until this has completed.
>>>> Update succeeded
>>>> Connected 'ipasrv01.ix.testing.com' to 'addc01.ad.testing.com'
>>>>
>>>>
>>>> Now I can't list the sync agreements. All I get is:
>>>>
>>>> # ipa-replica-manage list
>>>> unexpected error: * not found
>>>>
>>>> Any ideas?
>>>>
>>>>
>>>> Rgds,
>>>> Siggi
>>>>
>>>> _______________________________________________
>>>> Freeipa-users mailing list
>>>> Freeipa-users at redhat.com
>>>> https://www.redhat.com/mailman/listinfo/freeipa-users
>>>>
>>>>
>>
>> Hi,
>>
>> I upgraded in place. I did the initial installation on the 12th of
>> February. I think I started out with the first RC. Do I still have to
>> reinstall?
> Have you run ipa-ldap-updater after the rpm upgrade ?
>
> Simo.
>
>


Hi,

Yes I have.



Rgds,
Siggi






More information about the Freeipa-users mailing list