<html>
<head>
<meta content="text/html; charset=ISO-8859-1"
http-equiv="Content-Type">
</head>
<body smarttemplateinserted="true" bgcolor="#FFFFFF" text="#000000">
<div id="smartTemplate4-template">Figured it out.<br>
Somehow during the upgrade process, the default_realm changed to
one of our other domains we use. I'm guessing some RPM postinstall
script pulled the domain out of sssd.conf as that's the only place
on the box where that domain is mentioned. We don't touch
krb5.conf with any sort of configuration management utility.<br>
<br>
Anyway, after removing the domain from the krb5.conf and restoring
the original settings, ipa started up normally.<br>
<br>
-Patrick<br>
</div>
<br>
<div id="smartTemplate4-quoteHeader"><br>
<hr>
<div><b>From: </b>Patrick Hemmer <a class="moz-txt-link-rfc2396E" href="mailto:freeipa@stormcloud9.net"><freeipa@stormcloud9.net></a></div>
<div><b>Sent: </b> 2014-04-08 11:52:34 E</div>
<div><b>To: </b><a class="moz-txt-link-abbreviated" href="mailto:freeipa-users@redhat.com">freeipa-users@redhat.com</a></div>
<div><b>Subject: </b>[Freeipa-users]
/var/kerberos/krb5kdc/principal missing</div>
<br>
</div>
<blockquote cite="mid:53441B42.30809@stormcloud9.net" type="cite">
<meta http-equiv="content-type" content="text/html;
charset=ISO-8859-1">
I'm having the exact same issue as <a moz-do-not-send="true"
class="moz-txt-link-freetext"
href="http://www.redhat.com/archives/freeipa-users/2013-October/msg00009.html">http://www.redhat.com/archives/freeipa-users/2013-October/msg00009.html</a><br>
I upgraded from RHEL-6.3 to RHEL-6.5, and now FreeIPA won't start
due to kadmind not starting.<br>
<br>
The kadmind.log contains an extremely unhelpful:<br>
<font color="#660000"><tt>Apr 08 11:31:20 i-31f62969
kadmind[20850](Error): No such file or directory while
initializing, aborting</tt></font><br>
<br>
Stracing `/usr/sbin/kadmind -P /var/run/kadmind.pid` results in:<br>
<font color="#660000"><tt>open("/var/kerberos/krb5kdc/principal",
O_RDONLY) = -1 ENOENT (No such file or directory)</tt><tt><br>
</tt><tt>gettimeofday({1396971844, 51536}, NULL) = 0</tt><tt><br>
</tt><tt>open("/etc/localtime", O_RDONLY) = 4</tt><tt><br>
</tt><tt>fstat(4, {st_mode=S_IFREG|0644, st_size=3519, ...}) = 0</tt><tt><br>
</tt><tt>fstat(4, {st_mode=S_IFREG|0644, st_size=3519, ...}) = 0</tt><tt><br>
</tt><tt>mmap(NULL, 4096, PROT_READ|PROT_WRITE,
MAP_PRIVATE|MAP_ANONYMOUS, -1, 0) = 0x7f25440dd000</tt><tt><br>
</tt><tt>read(4,
"TZif2\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\4\0\0\0\4\0\0\0\0"...,
4096) = 3519</tt><tt><br>
</tt><tt>lseek(4, -2252, SEEK_CUR) = 1267</tt><tt><br>
</tt><tt>read(4,
"TZif2\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\5\0\0\0\5\0\0\0\0"...,
4096) = 2252</tt><tt><br>
</tt><tt>close(4) = 0</tt><tt><br>
</tt><tt>munmap(0x7f25440dd000, 4096) = 0</tt><tt><br>
</tt><tt>write(3, "Apr 08 11:44:04 i-31f62969 kadmi"..., 105) =
105</tt><tt><br>
</tt><tt>write(2, "kadmind: No such file or directo"...,
64kadmind: No such file or directory while initializing,
aborting) = 64</tt><tt><br>
</tt><tt>close(3) = 0</tt><tt><br>
</tt><tt>munmap(0x7f25440df000, 4096) = 0</tt><tt><br>
</tt><tt>exit_group(1) = ?</tt></font><br>
<br>
As requested in the linked thread, the dbmodules section looks
like this:<br>
<font color="#660000"><tt>[dbmodules]</tt><tt><br>
</tt><tt> CLIFF.CLOUDBURRITO.COM = {</tt><tt><br>
</tt><tt> db_library = ipadb.so</tt><tt><br>
</tt><tt> }</tt><br>
</font><br>
Another important item of note, I have another IPA server which
has not been upgraded from 6.3 yet, and the file is missing there
too, but kadmind is currently running just fine...<br>
<br>
Ideas?<br>
<br>
-Patrick<br>
<br>
<fieldset class="mimeAttachmentHeader"></fieldset>
<br>
<pre wrap="">_______________________________________________
Freeipa-users mailing list
<a class="moz-txt-link-abbreviated" href="mailto:Freeipa-users@redhat.com">Freeipa-users@redhat.com</a>
<a class="moz-txt-link-freetext" href="https://www.redhat.com/mailman/listinfo/freeipa-users">https://www.redhat.com/mailman/listinfo/freeipa-users</a></pre>
</blockquote>
<br>
</body>
</html>