[Freeipa-users] secure NFSv4 failure after IPA server upgrade
Simo Sorce
simo at redhat.com
Wed Nov 16 19:40:04 UTC 2011
On Wed, 2011-11-16 at 20:07 +0100, Thomas Sailer wrote:
> After upgrading FreeIPA from FC14/FreeIPAv1 to FC16/FreeIPAv2, secure
> NFSv4 mounts do not work anymore. V2 is basically a reinstalled
> FreeIPA
> server with user data migrated from v1, and host keys etc. recreated.
Are you using DES keys ?
In that case you probably need to allow weak crypto on both server and
client.
Note that if all your server/clients are FC16 and you have no old ones <
FC14 or < RHEL 6 then you do not need to force the creation of the nfs/
principal to use only DES keys.
Simo.
>
--
Simo Sorce * Red Hat, Inc * New York
More information about the Freeipa-users
mailing list