[Freeipa-users] how can i configure solaris 10 sparc and x86 as ipa clients

Rob Crittenden rcritten at redhat.com
Tue Jan 6 15:23:14 UTC 2015


Dmitri Pal wrote:
> On 01/05/2015 10:37 PM, Ben .T.George wrote:
>> HI
>>
>> IRC is like totally dead. i have waited one whole day to anyone
>> responding. not even to my replay. i didn't see any messages at all.
> 
> As  I said AB is on PTO till tomorrow. Please ping him when he is back.

You're on #freeipa on freenode, right? Activity has been low in the new
year but it hasn't been zero.

rob

> 
>>
>> Regards,
>> Ben
>>
>>
>> On Mon, Jan 5, 2015 at 11:49 PM, Dmitri Pal <dpal at redhat.com
>> <mailto:dpal at redhat.com>> wrote:
>>
>>     On 01/05/2015 01:31 PM, Ben .T.George wrote:
>>>     HI
>>>
>>>     Thanks for the information. When i run ipa-advise, i am getting
>>>     below output, which advice i need to choose. all of them are
>>>     pointing to linux based
>>>
>>>     [root at kwtpocpbis01 ~]# ipa-advise
>>>     ----------------------------------------------------------------------
>>>     List of available advices
>>>     ----------------------------------------------------------------------
>>>         config-fedora-authconfig             : Authconfig
>>>     instructions for
>>>                                                configuring Fedora
>>>     18/19 client with
>>>                                                IPA server without use
>>>     of SSSD.
>>>         config-freebsd-nss-pam-ldapd         : Instructions for
>>>     configuring a
>>>                                                FreeBSD system with
>>>     nss-pam-ldapd.
>>>         config-generic-linux-nss-pam-ldapd   : Instructions for
>>>     configuring a system
>>>                                                with nss-pam-ldapd.
>>>     This set of
>>>                                                instructions is
>>>     targeted for linux
>>>                                                systems that do not
>>>     include the
>>>                                                authconfig utility.
>>>         config-generic-linux-sssd-before-1-9 : Instructions for
>>>     configuring a system
>>>                                                with an old version of
>>>     SSSD (1.5-1.8)
>>>                                                as a FreeIPA client.
>>>     This set of
>>>                                                instructions is
>>>     targeted for linux
>>>                                                systems that do not
>>>     include the
>>>                                                authconfig utility.
>>>         config-redhat-nss-ldap               : Instructions for
>>>     configuring a system
>>>                                                with nss-ldap as a
>>>     FreeIPA client.
>>>                                                This set of
>>>     instructions is targeted
>>>                                                for platforms that
>>>     include the
>>>                                                authconfig utility,
>>>     which are all Red
>>>                                                Hat based platforms.
>>>         config-redhat-nss-pam-ldapd          : Instructions for
>>>     configuring a system
>>>                                                with nss-pam-ldapd as
>>>     a FreeIPA
>>>                                                client. This set of
>>>     instructions is
>>>                                                targeted for platforms
>>>     that include
>>>                                                the authconfig
>>>     utility, which are all
>>>                                                Red Hat based platforms.
>>>         config-redhat-sssd-before-1-9        : Instructions for
>>>     configuring a system
>>>                                                with an old version of
>>>     SSSD (1.5-1.8)
>>>                                                as a FreeIPA client.
>>>     This set of
>>>                                                instructions is
>>>     targeted for
>>>                                                platforms that include
>>>     the authconfig
>>>                                                utility, which are all
>>>     Red Hat based
>>>                                                platforms.
>>>
>>>
>>
>>     Hm, I remember that AB mentioned that he had one for Solaris.
>>     He is on PTO till Wednesday. Please ping him on IRC after Wed.
>>
>>
>>>     thanks & Regards,
>>>     Ben
>>>
>>>     On Mon, Jan 5, 2015 at 6:54 PM, Dmitri Pal <dpal at redhat.com
>>>     <mailto:dpal at redhat.com>> wrote:
>>>
>>>         On 01/05/2015 10:51 AM, Dmitri Pal wrote:
>>>>         On 01/04/2015 10:30 PM, Ben .T.George wrote:
>>>>>         HI
>>>>>
>>>>>         yes you are right. Linux clients working and IPA is in
>>>>>         trust relationship with AD.
>>>>>
>>>>>         currently i am using 3.3.3 i guess i didn't tryed
>>>>>         ipa-advice tool yet. I am not aware about this tool. can
>>>>>         you please give right directions regarding this tool, so
>>>>>         that i can try on it.
>>>>>
>>>>>         regarding manuals and tutorials:
>>>>>
>>>>>         http://www.freeipa.org/page/ConfiguringUnixClients#Solaris_8.2F9.2F10
>>>>>         http://www.freeipa.org/docs/1.2/Client_Setup_Guide/en-US/html/chap-Client_Configuration_Guide-Configuring_Solaris_as_an_IPA_Client.html
>>>>>         http://docs.fedoraproject.org/en-US/Fedora/17/html/FreeIPA_Guide/Configuring_an_IPA_Client_on_Solaris.html
>>>>>         http://docs.fedoraproject.org/en-US/Fedora/15/html/FreeIPA_Guide/Configuring_an_IPA_Client_on_Solaris.html
>>>>
>>>>         I think this should help:
>>>>         http://www.freeipa.org/images/0/0d/FreeIPA33-legacy-clients.pdf
>>>>         It mentions the tool too.
>>>
>>>         You need to point your Solaris clients to compat tree.
>>>
>>>
>>>>
>>>>>
>>>>>         Regards,Ben
>>>>>
>>>>>
>>>>>         On Mon, Jan 5, 2015 at 12:34 AM, Dmitri Pal
>>>>>         <dpal at redhat.com <mailto:dpal at redhat.com>> wrote:
>>>>>
>>>>>             On 01/04/2015 01:19 PM, Ben .T.George wrote:
>>>>>>
>>>>>>             HI
>>>>>>
>>>>>>             Thanks for the replay.
>>>>>>
>>>>>>             i was trying to achieve just LDAP authentication only.
>>>>>>             If possible Role based access and Host based access.
>>>>>>             but most priority is to authenticate solaris against
>>>>>>             Active Directory/IPA
>>>>>>
>>>>>>             The tutorials/Guides are not clear actually as i tried
>>>>>>             many times. My IPA server is working fine. bcoz i
>>>>>>             tested by adding linux(centos) as IPA client by using
>>>>>>             client ass ipa commands.
>>>>>
>>>>>             OK, so let me make sure I get you right: you have IPA
>>>>>             and it is in trust relations with AD, right? You tested
>>>>>             it from Linux clients and it works but not with Solaris
>>>>>             client, right? Which version of IPA are you using? Have
>>>>>             you looked at ipa-advise tool?
>>>>>             Which manuals and tutorials you tried?
>>>>>
>>>>>
>>>>>>
>>>>>>             Regards,
>>>>>>             Ben
>>>>>>
>>>>>>             On Sun, Jan 4, 2015 at 7:11 PM, Dmitri Pal
>>>>>>             <dpal at redhat.com <mailto:dpal at redhat.com>> wrote:
>>>>>>
>>>>>>                 On 01/04/2015 02:10 AM, Ben .T.George wrote:
>>>>>>>                 HI
>>>>>>>
>>>>>>>                 This is i am struggling to get this working on
>>>>>>>                 Solaris x86 client. as i did many things based on
>>>>>>>                 many tutorials. \i am wondering why people who
>>>>>>>                 achieved this already not sharing this
>>>>>>>                 information about configuring Solaris as IPA client .
>>>>>>
>>>>>>                 Solaris can be configured to be a client of IPA so
>>>>>>                 it seems that there is some misalignment of the
>>>>>>                 expectations.
>>>>>>                 What is your goal? What kind of integration for
>>>>>>                 Solaris client you want to achieve? Just LDAP
>>>>>>                 authentication would work following the instructions.
>>>>>>                 I suspect that something that you are trying to
>>>>>>                 accomplish is either done differently or have not
>>>>>>                 been a priority for others and thus have not been
>>>>>>                 explored.
>>>>>>
>>>>>>
>>>>>>>
>>>>>>>                 Regards,
>>>>>>>                 Ben
>>>>>>>
>>>>>>>                 On Mon, Dec 29, 2014 at 11:59 PM, Dmitri Pal
>>>>>>>                 <dpal at redhat.com <mailto:dpal at redhat.com>> wrote:
>>>>>>>
>>>>>>>                     On 12/21/2014 07:50 PM, Fraser Tweedale wrote:
>>>>>>>
>>>>>>>                         On Sun, Dec 21, 2014 at 09:03:17AM +0300,
>>>>>>>                         Ben .T.George wrote:
>>>>>>>
>>>>>>>                             Hi List
>>>>>>>
>>>>>>>                             how can i configure solaris 10 sparc
>>>>>>>                             and x86 as ipa clients.
>>>>>>>
>>>>>>>                             Regards,
>>>>>>>                             Ben
>>>>>>>
>>>>>>>                         Hi Ben,
>>>>>>>
>>>>>>>                         Please follow the Solaris 8/9/10
>>>>>>>                         instructions on the wiki:
>>>>>>>                         http://www.freeipa.org/page/ConfiguringUnixClients#Solaris_8.2F9.2F10
>>>>>>>
>>>>>>>                         Let us know if run into difficulties or
>>>>>>>                         if there are error or
>>>>>>>                         omissions in the instructions.
>>>>>>>
>>>>>>>
>>>>>>>                     Also see
>>>>>>>                     https://fedorahosted.org/freeipa/ticket/4633
>>>>>>>
>>>>>>>
>>>>>>>                         Cheers,
>>>>>>>
>>>>>>>                         Fraser
>>>>>>>
>>>>>>>                             -- 
>>>>>>>                             Manage your subscription for the
>>>>>>>                             Freeipa-users mailing list:
>>>>>>>                             https://www.redhat.com/mailman/listinfo/freeipa-users
>>>>>>>                             Go To http://freeipa.org for more
>>>>>>>                             info on the project
>>>>>>>
>>>>>>>
>>>>>>>
>>>>>>>                     -- 
>>>>>>>                     Thank you,
>>>>>>>                     Dmitri Pal
>>>>>>>
>>>>>>>                     Sr. Engineering Manager IdM portfolio
>>>>>>>                     Red Hat, Inc.
>>>>>>>
>>>>>>>
>>>>>>>                     -- 
>>>>>>>                     Manage your subscription for the
>>>>>>>                     Freeipa-users mailing list:
>>>>>>>                     https://www.redhat.com/mailman/listinfo/freeipa-users
>>>>>>>                     Go To http://freeipa.org for more info on the
>>>>>>>                     project
>>>>>>>
>>>>>>>
>>>>>>>
>>>>>>>
>>>>>>
>>>>>>
>>>>>>                 -- 
>>>>>>                 Thank you,
>>>>>>                 Dmitri Pal
>>>>>>
>>>>>>                 Sr. Engineering Manager IdM portfolio
>>>>>>                 Red Hat, Inc.
>>>>>>
>>>>>>
>>>>>>
>>>>>>
>>>>>>
>>>>>
>>>>>
>>>>>             -- 
>>>>>             Thank you,
>>>>>             Dmitri Pal
>>>>>
>>>>>             Sr. Engineering Manager IdM portfolio
>>>>>             Red Hat, Inc.
>>>>>
>>>>>
>>>>>
>>>>>
>>>>
>>>>
>>>>         -- 
>>>>         Thank you,
>>>>         Dmitri Pal
>>>>
>>>>         Sr. Engineering Manager IdM portfolio
>>>>         Red Hat, Inc.
>>>>
>>>>
>>>
>>>
>>>         -- 
>>>         Thank you,
>>>         Dmitri Pal
>>>
>>>         Sr. Engineering Manager IdM portfolio
>>>         Red Hat, Inc.
>>>
>>>
>>>         --
>>>         Manage your subscription for the Freeipa-users mailing list:
>>>         https://www.redhat.com/mailman/listinfo/freeipa-users
>>>         Go To http://freeipa.org for more info on the project
>>>
>>>
>>>
>>
>>
>>     -- 
>>     Thank you,
>>     Dmitri Pal
>>
>>     Sr. Engineering Manager IdM portfolio
>>     Red Hat, Inc.
>>
>>
>>
> 
> 
> -- 
> Thank you,
> Dmitri Pal
> 
> Sr. Engineering Manager IdM portfolio
> Red Hat, Inc.
> 
> 
> 




More information about the Freeipa-users mailing list