[Freeipa-users] Having trouble running FreeIPA with SRV records on externally managed DNS

Martin Basti mbasti at redhat.com
Tue Jan 20 16:20:05 UTC 2015


On 20/01/15 16:58, rob.harper at stfc.ac.uk wrote:
> Daniel wrote:
>>> ; kerberos realm
>>> _kerberos.my.domain. IN TXT my.domain.
>> this looks odd to me, our central DNS TXT record zone entry looks like
>>
>> ---
>> _kerberos  86400  IN  TXT        "MY.DOMAIN"
>> ---
>>
>> where "MY.DOMAIN" is my Kerberos realm (usually the domain name in
>> capital letters).
>>
>> If you do a
>>
>> ---
>> dig +short -t TXT _kerberos.my.domain
>> ---
>>
>> it should answer
>>
>> ---
>> "MY.DOMAIN"
>> ---
> Hi Daniel, thanks for  the suggestion.
>
> I get:
>
> [root at rhtest02 ~]# dig +short -t TXT _kerberos.gridpp.rl.ac.uk
> "gridpp.rl.ac.uk."
>
> So not in uppercase.  I will ask to get the TXT record changed.  Unfortunately I can't do it myself, so can't check this instantly, but I will see what happens...
>
> Thanks,
> Rob
>
>
Hello,

remove the trailing dot in TXT record, it could cause problems.

-- 
Martin Basti




More information about the Freeipa-users mailing list