[Freeipa-users] secure NFSv4 failure after IPA server upgrade

Simo Sorce simo at redhat.com
Wed Nov 16 19:40:04 UTC 2011


On Wed, 2011-11-16 at 20:07 +0100, Thomas Sailer wrote:
> After upgrading FreeIPA from FC14/FreeIPAv1 to FC16/FreeIPAv2, secure 
> NFSv4 mounts do not work anymore. V2 is basically a reinstalled
> FreeIPA 
> server with user data migrated from v1, and host keys etc. recreated.

Are you using DES keys ?
In that case you probably need to allow weak crypto on both server and
client.

Note that if all your server/clients are FC16 and you have no old ones <
FC14 or < RHEL 6 then you do not need to force the creation of the nfs/
principal to use only DES keys.

Simo.
> 
-- 
Simo Sorce * Red Hat, Inc * New York




More information about the Freeipa-users mailing list