[Freeipa-users] Setting up Domain Trust with Active Directory w2008R2

Svancara, Randall rsvancara at wsu.edu
Mon Sep 28 18:03:11 UTC 2015


Thanks!  I will wait for 7.2 so I can upgrade to 4.2.  I saw this bug too but was not sure if I was impacted or not.

Randall
________________________________________
From: Alexander Bokovoy [abokovoy at redhat.com]
Sent: Sunday, September 27, 2015 11:51 PM
To: Svancara, Randall
Cc: freeipa-users at redhat.com
Subject: Re: [Freeipa-users] Setting up Domain Trust with Active Directory w2008R2

On Sat, 26 Sep 2015, Svancara, Randall wrote:
>Hi,
>
>Trying to establish a trust relationship between a test domain that I
>have configured on windows server 2008r2 with FreeIPA 4.1.2 (Centos 7).
>
>I have enabled debugging and I attempt to run the following command:
>
>ipa trust-add --type=ad ad.winblows --admin Administrator --password
>
>The http error logs emit the following output provided below.  Looks
>like something connects to the domain controller perforing the CLDAP
>query, but then there is a second section that appears to have a
>problem with "non-public: KeyError: 'dns_hostname'

This looks like https://urldefense.proofpoint.com/v1/url?u=https://fedorahosted.org/freeipa/ticket/4570&k=EWEYHnIvm0nsSxnW5y9VIw%3D%3D%0A&r=1RDUEYXuZAP0Ae4ANF6FktG23%2BRcTcO9hL4BP3fO5x4%3D%0A&m=9cDECQSnm6WYILwNmIM53qxpn14U5N3SCYV%2F2IKGnpw%3D%0A&s=dbfb52a87049cd519a4a5c9c1eed20975793750bdbdd301d77b6dc1bf2f3b303

We fixed it with refactoring of IPA trust-add code in FreeIPA 4.2.1.
It is going to come to CentOS 7 eventually once RHEL 7.2 is released
(beta is out already).

--
/ Alexander Bokovoy




More information about the Freeipa-users mailing list