[Freeipa-users] AD Trust failed with 'CIFS server configuration does not allow access to \\pipe\lsarpc'

Alexander Bokovoy abokovoy at redhat.com
Sun May 1 13:40:39 UTC 2016


On Sun, 01 May 2016, Matrix wrote:
>Hi, list
>
>I am trying to setup an integration env between IPA and AD Window 2012 R2.
>
>Below error occurred while running "# echo 'RedHat1!' | ipa trust-add --type=ad examplemedia.net --admin Administrator --password"
>
># echo 'RedHat1!' | ipa trust-add --type=ad examplemedia.net --admin Administrator --password
>ipa: ERROR: CIFS server configuration does not allow access to \\pipe\lsarpc
>
>
>IPA / Samba Version, I am running with:
>
>ipa-server-4.2.0-15.el7.x86_64
>samba-4.2.3-12.el7_2.x86_64
>
># tailf /var/log/httpd/error_log
>[Sun May 01 08:27:17.493412 2016] [:error] [pid 32267] ipa: INFO: [jsonserver_session] admin at DEV.EXAMPLE.NET: trust_add(u'examplemedia.net', trust_type=u'ad', realm_admin=u'Administrator', realm_passwd=u'********', all=False, raw=False, version=u'2.156'): RemoteRetrieveError
>[Sun May 01 08:35:00.600654 2016] [:error] [pid 32266] ipa: INFO: [jsonserver_session] admin at DEV.EXAMPLE.NET: trust_add(u'examplemedia.net', trust_type=u'ad', realm_admin=u'Administrator', realm_passwd=u'********', all=False, raw=False, version=u'2.156'): RemoteRetrieveError
>
>I have also tried latest ipa-server version shipped by RHEL. the same error occurred.
>
>It ssems that https://bugzilla.redhat.com/show_bug.cgi?id=1249455 did not fixed it.
Add 'log level = 100' to /usr/share/ipa/smb.conf.empty and re-try 
'ipa trust-add'. You'll get more detailed debugging output in error_log.
-- 
/ Alexander Bokovoy




More information about the Freeipa-users mailing list