[Freeipa-users] Error trying to enroll new client

Bret Wortman bret.wortman at damascusgrp.com
Thu Sep 26 12:30:12 UTC 2013


# ipa-client-install --enable-dns-updates --mkhomedir
Discovery was successful!
Hostname: os105.foo.net
Realm: FOO.NET
DNS Domain: foo.net
IPA Server: osipa.foo.net
BaseDN: dc=foo,dc=net


Continue to configure the system with these values? [no]: yes
User authrozied to enroll computers: admin
Synchronizing time with KDC...
Unable to sync time with IPA NTP server, assuming the time is in sync.
Password for admin at FOO.NET

Enrolled in IPA realm FOO.NET
Created /etc/ipa/default.conf
COnfigured /etc/sssd/sssd.conf
COnfigured /etc/krb5.conf for IPA realm FOO.NET
Failed to obtain host TGT.
Installation failed. Rolling back changes.
#

I've seen the "unable to sync time" error before and have still been able
to enroll, but something's different with this host. It also does this when
I try to enroll with other replicas as well. Thoughts?

*
*
*Bret Wortman*

http://damascusgrp.com/
http://about.me/wortmanbret
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://listman.redhat.com/archives/freeipa-users/attachments/20130926/56b36961/attachment.htm>


More information about the Freeipa-users mailing list