[Freeipa-users] Migration of password (Kerberos Tickets) fails when users initially imported from AD

Dmitri Pal dpal at redhat.com
Mon Mar 4 18:44:44 UTC 2013


On 03/02/2013 09:40 AM, Rajnesh Kumar Siwal wrote:
> [root at ipasvr slapd-LABS-LOCAL]# ipa user-show rsiwal
>   User login: rsiwal
>   First name: Rajnesh Kumar
>   Last name: Siwal
>   Home directory: /home/rsiwal
>   Login shell: /bin/bash
>   UID: 1201200050
>   GID: 1201200050
>   Account disabled: False
>   Password: False
>   Kerberos keys available: False

You need to change passwords too to set kerberos hashes/keys.


> On Sat, Mar 2, 2013 at 7:42 PM, Rajnesh Kumar Siwal
> <rajnesh.siwal at gmail.com> wrote:
>> We just set up synchronization between the IPA Server and AD Server
>> and setup password.
>> But we cannot see kerberos tickets corresponding to the users fetched
>> from Windows AD Server.
>>
>> --
>> Regards,
>> Rajnesh Kumar Siwal
>
>


-- 
Thank you,
Dmitri Pal

Sr. Engineering Manager for IdM portfolio
Red Hat Inc.


-------------------------------
Looking to carve out IT costs?
www.redhat.com/carveoutcosts/






More information about the Freeipa-users mailing list