[Freeipa-users] how can i configure solaris 10 sparc and x86 as ipa clients

Dmitri Pal dpal at redhat.com
Mon Jan 5 20:49:49 UTC 2015


On 01/05/2015 01:31 PM, Ben .T.George wrote:
> HI
>
> Thanks for the information. When i run ipa-advise, i am getting below 
> output, which advice i need to choose. all of them are pointing to 
> linux based
>
> [root at kwtpocpbis01 ~]# ipa-advise
> ----------------------------------------------------------------------
> List of available advices
> ----------------------------------------------------------------------
>     config-fedora-authconfig             : Authconfig instructions for
>                                            configuring Fedora 18/19 
> client with
>                                            IPA server without use of SSSD.
>     config-freebsd-nss-pam-ldapd         : Instructions for configuring a
>                                            FreeBSD system with 
> nss-pam-ldapd.
>     config-generic-linux-nss-pam-ldapd   : Instructions for 
> configuring a system
>                                            with nss-pam-ldapd. This set of
>                                            instructions is targeted 
> for linux
>                                            systems that do not include the
>                                            authconfig utility.
>     config-generic-linux-sssd-before-1-9 : Instructions for 
> configuring a system
>                                            with an old version of SSSD 
> (1.5-1.8)
>                                            as a FreeIPA client. This 
> set of
>                                            instructions is targeted 
> for linux
>                                            systems that do not include the
>                                            authconfig utility.
>     config-redhat-nss-ldap               : Instructions for 
> configuring a system
>                                            with nss-ldap as a FreeIPA 
> client.
>                                            This set of instructions is 
> targeted
>                                            for platforms that include the
>                                            authconfig utility, which 
> are all Red
>                                            Hat based platforms.
>     config-redhat-nss-pam-ldapd          : Instructions for 
> configuring a system
>                                            with nss-pam-ldapd as a FreeIPA
>                                            client. This set of 
> instructions is
>                                            targeted for platforms that 
> include
>                                            the authconfig utility, 
> which are all
>                                            Red Hat based platforms.
>     config-redhat-sssd-before-1-9        : Instructions for 
> configuring a system
>                                            with an old version of SSSD 
> (1.5-1.8)
>                                            as a FreeIPA client. This 
> set of
>                                            instructions is targeted for
>                                            platforms that include the 
> authconfig
>                                            utility, which are all Red 
> Hat based
>                                            platforms.
>
>

Hm, I remember that AB mentioned that he had one for Solaris.
He is on PTO till Wednesday. Please ping him on IRC after Wed.

> thanks & Regards,
> Ben
>
> On Mon, Jan 5, 2015 at 6:54 PM, Dmitri Pal <dpal at redhat.com 
> <mailto:dpal at redhat.com>> wrote:
>
>     On 01/05/2015 10:51 AM, Dmitri Pal wrote:
>>     On 01/04/2015 10:30 PM, Ben .T.George wrote:
>>>     HI
>>>
>>>     yes you are right. Linux clients working and IPA is in trust
>>>     relationship with AD.
>>>
>>>     currently i am using 3.3.3 i guess i didn't tryed ipa-advice
>>>     tool yet. I am not aware about this tool. can you please give
>>>     right directions regarding this tool, so that i can try on it.
>>>
>>>     regarding manuals and tutorials:
>>>
>>>     http://www.freeipa.org/page/ConfiguringUnixClients#Solaris_8.2F9.2F10
>>>     http://www.freeipa.org/docs/1.2/Client_Setup_Guide/en-US/html/chap-Client_Configuration_Guide-Configuring_Solaris_as_an_IPA_Client.html
>>>     http://docs.fedoraproject.org/en-US/Fedora/17/html/FreeIPA_Guide/Configuring_an_IPA_Client_on_Solaris.html
>>>     http://docs.fedoraproject.org/en-US/Fedora/15/html/FreeIPA_Guide/Configuring_an_IPA_Client_on_Solaris.html
>>
>>     I think this should help:
>>     http://www.freeipa.org/images/0/0d/FreeIPA33-legacy-clients.pdf
>>     It mentions the tool too.
>
>     You need to point your Solaris clients to compat tree.
>
>
>>
>>>
>>>     Regards,Ben
>>>
>>>
>>>     On Mon, Jan 5, 2015 at 12:34 AM, Dmitri Pal <dpal at redhat.com
>>>     <mailto:dpal at redhat.com>> wrote:
>>>
>>>         On 01/04/2015 01:19 PM, Ben .T.George wrote:
>>>>
>>>>         HI
>>>>
>>>>         Thanks for the replay.
>>>>
>>>>         i was trying to achieve just LDAP authentication only. If
>>>>         possible Role based access and Host based access. but most
>>>>         priority is to authenticate solaris against Active
>>>>         Directory/IPA
>>>>
>>>>         The tutorials/Guides are not clear actually as i tried many
>>>>         times. My IPA server is working fine. bcoz i tested by
>>>>         adding linux(centos) as IPA client by using client ass ipa
>>>>         commands.
>>>
>>>         OK, so let me make sure I get you right: you have IPA and it
>>>         is in trust relations with AD, right? You tested it from
>>>         Linux clients and it works but not with Solaris client,
>>>         right? Which version of IPA are you using? Have you looked
>>>         at ipa-advise tool?
>>>         Which manuals and tutorials you tried?
>>>
>>>
>>>>
>>>>         Regards,
>>>>         Ben
>>>>
>>>>         On Sun, Jan 4, 2015 at 7:11 PM, Dmitri Pal <dpal at redhat.com
>>>>         <mailto:dpal at redhat.com>> wrote:
>>>>
>>>>             On 01/04/2015 02:10 AM, Ben .T.George wrote:
>>>>>             HI
>>>>>
>>>>>             This is i am struggling to get this working on Solaris
>>>>>             x86 client. as i did many things based on many
>>>>>             tutorials. \i am wondering why people who achieved
>>>>>             this already not sharing this information about
>>>>>             configuring Solaris as IPA client .
>>>>
>>>>             Solaris can be configured to be a client of IPA so it
>>>>             seems that there is some misalignment of the expectations.
>>>>             What is your goal? What kind of integration for Solaris
>>>>             client you want to achieve? Just LDAP authentication
>>>>             would work following the instructions.
>>>>             I suspect that something that you are trying to
>>>>             accomplish is either done differently or have not been
>>>>             a priority for others and thus have not been explored.
>>>>
>>>>
>>>>>
>>>>>             Regards,
>>>>>             Ben
>>>>>
>>>>>             On Mon, Dec 29, 2014 at 11:59 PM, Dmitri Pal
>>>>>             <dpal at redhat.com <mailto:dpal at redhat.com>> wrote:
>>>>>
>>>>>                 On 12/21/2014 07:50 PM, Fraser Tweedale wrote:
>>>>>
>>>>>                     On Sun, Dec 21, 2014 at 09:03:17AM +0300, Ben
>>>>>                     .T.George wrote:
>>>>>
>>>>>                         Hi List
>>>>>
>>>>>                         how can i configure solaris 10 sparc and
>>>>>                         x86 as ipa clients.
>>>>>
>>>>>                         Regards,
>>>>>                         Ben
>>>>>
>>>>>                     Hi Ben,
>>>>>
>>>>>                     Please follow the Solaris 8/9/10 instructions
>>>>>                     on the wiki:
>>>>>                     http://www.freeipa.org/page/ConfiguringUnixClients#Solaris_8.2F9.2F10
>>>>>
>>>>>                     Let us know if run into difficulties or if
>>>>>                     there are error or
>>>>>                     omissions in the instructions.
>>>>>
>>>>>
>>>>>                 Also see https://fedorahosted.org/freeipa/ticket/4633
>>>>>
>>>>>
>>>>>                     Cheers,
>>>>>
>>>>>                     Fraser
>>>>>
>>>>>                         -- 
>>>>>                         Manage your subscription for the
>>>>>                         Freeipa-users mailing list:
>>>>>                         https://www.redhat.com/mailman/listinfo/freeipa-users
>>>>>                         Go To http://freeipa.org for more info on
>>>>>                         the project
>>>>>
>>>>>
>>>>>
>>>>>                 -- 
>>>>>                 Thank you,
>>>>>                 Dmitri Pal
>>>>>
>>>>>                 Sr. Engineering Manager IdM portfolio
>>>>>                 Red Hat, Inc.
>>>>>
>>>>>
>>>>>                 -- 
>>>>>                 Manage your subscription for the Freeipa-users
>>>>>                 mailing list:
>>>>>                 https://www.redhat.com/mailman/listinfo/freeipa-users
>>>>>                 Go To http://freeipa.org for more info on the project
>>>>>
>>>>>
>>>>>
>>>>>
>>>>
>>>>
>>>>             -- 
>>>>             Thank you,
>>>>             Dmitri Pal
>>>>
>>>>             Sr. Engineering Manager IdM portfolio
>>>>             Red Hat, Inc.
>>>>
>>>>
>>>>
>>>>
>>>>
>>>
>>>
>>>         -- 
>>>         Thank you,
>>>         Dmitri Pal
>>>
>>>         Sr. Engineering Manager IdM portfolio
>>>         Red Hat, Inc.
>>>
>>>
>>>
>>>
>>
>>
>>     -- 
>>     Thank you,
>>     Dmitri Pal
>>
>>     Sr. Engineering Manager IdM portfolio
>>     Red Hat, Inc.
>>
>>
>
>
>     -- 
>     Thank you,
>     Dmitri Pal
>
>     Sr. Engineering Manager IdM portfolio
>     Red Hat, Inc.
>
>
>     --
>     Manage your subscription for the Freeipa-users mailing list:
>     https://www.redhat.com/mailman/listinfo/freeipa-users
>     Go To http://freeipa.org for more info on the project
>
>
>


-- 
Thank you,
Dmitri Pal

Sr. Engineering Manager IdM portfolio
Red Hat, Inc.

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://listman.redhat.com/archives/freeipa-users/attachments/20150105/9e9b2d29/attachment.htm>


More information about the Freeipa-users mailing list