[Freeipa-users] SSSD Failover does not work

Jakub Hrozek jhrozek at redhat.com
Fri Jan 17 14:53:04 UTC 2014


On Fri, Jan 17, 2014 at 03:35:03PM +0100, Petr Spacek wrote:
> On 17.1.2014 15:13, Stanislav Zidek wrote:
> >Hi everybody,
> >
> >I'm struggling with IPA failover and would be grateful for any advice.
> >
> >I've setup a IPA server, added some client machines and users, then
> >created a replica, added replica address to /etc/sssd/sssd.conf on
> BTW the best approach is to use SRV records in DNS so clients will
> automatically pick up new replicas. You will not need to touch
> sssd.conf at all.

+1 I would recommend the SRV records as well if your DNS is managed by
the IPA server. No need to touch the client config.

> 
> >clients. Everything fine so far. But when I simulate problem with first
> >IPA server (by issuing "service ipa stop"). Then things start to get
> >weird to me. I cannot login to clients, until I make a "service sssd
> >restart" on them and wait few minutes.
> >
> >Am I doing something wrong? Is this expected behaviour?
> I will let SSSD guys to comment on this.

As Dmitri commented in the other thread, logs and config would be
useful.




More information about the Freeipa-users mailing list