<html>
  <head>
    <meta content="text/html; charset=ISO-8859-1"
      http-equiv="Content-Type">
  </head>
  <body smarttemplateinserted="true" bgcolor="#FFFFFF" text="#000000">
    <div id="smartTemplate4-template">Figured it out.<br>
      Somehow during the upgrade process, the default_realm changed to
      one of our other domains we use. I'm guessing some RPM postinstall
      script pulled the domain out of sssd.conf as that's the only place
      on the box where that domain is mentioned. We don't touch
      krb5.conf with any sort of configuration management utility.<br>
      <br>
      Anyway, after removing the domain from the krb5.conf and restoring
      the original settings, ipa started up normally.<br>
      <br>
      -Patrick<br>
    </div>
    <br>
    <div id="smartTemplate4-quoteHeader"><br>
      <hr>
      <div><b>From: </b>Patrick Hemmer <a class="moz-txt-link-rfc2396E" href="mailto:freeipa@stormcloud9.net"><freeipa@stormcloud9.net></a></div>
      <div><b>Sent: </b> 2014-04-08 11:52:34 E</div>
      <div><b>To: </b><a class="moz-txt-link-abbreviated" href="mailto:freeipa-users@redhat.com">freeipa-users@redhat.com</a></div>
      <div><b>Subject: </b>[Freeipa-users]
        /var/kerberos/krb5kdc/principal missing</div>
      <br>
    </div>
    <blockquote cite="mid:53441B42.30809@stormcloud9.net" type="cite">
      <meta http-equiv="content-type" content="text/html;
        charset=ISO-8859-1">
      I'm having the exact same issue as <a moz-do-not-send="true"
        class="moz-txt-link-freetext"
href="http://www.redhat.com/archives/freeipa-users/2013-October/msg00009.html">http://www.redhat.com/archives/freeipa-users/2013-October/msg00009.html</a><br>
      I upgraded from RHEL-6.3 to RHEL-6.5, and now FreeIPA won't start
      due to kadmind not starting.<br>
      <br>
      The kadmind.log contains an extremely unhelpful:<br>
      <font color="#660000"><tt>Apr 08 11:31:20 i-31f62969
          kadmind[20850](Error): No such file or directory while
          initializing, aborting</tt></font><br>
      <br>
      Stracing `/usr/sbin/kadmind -P /var/run/kadmind.pid` results in:<br>
      <font color="#660000"><tt>open("/var/kerberos/krb5kdc/principal",
          O_RDONLY) = -1 ENOENT (No such file or directory)</tt><tt><br>
        </tt><tt>gettimeofday({1396971844, 51536}, NULL) = 0</tt><tt><br>
        </tt><tt>open("/etc/localtime", O_RDONLY)        = 4</tt><tt><br>
        </tt><tt>fstat(4, {st_mode=S_IFREG|0644, st_size=3519, ...}) = 0</tt><tt><br>
        </tt><tt>fstat(4, {st_mode=S_IFREG|0644, st_size=3519, ...}) = 0</tt><tt><br>
        </tt><tt>mmap(NULL, 4096, PROT_READ|PROT_WRITE,
          MAP_PRIVATE|MAP_ANONYMOUS, -1, 0) = 0x7f25440dd000</tt><tt><br>
        </tt><tt>read(4,
          "TZif2\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\4\0\0\0\4\0\0\0\0"...,
          4096) = 3519</tt><tt><br>
        </tt><tt>lseek(4, -2252, SEEK_CUR)               = 1267</tt><tt><br>
        </tt><tt>read(4,
          "TZif2\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\5\0\0\0\5\0\0\0\0"...,
          4096) = 2252</tt><tt><br>
        </tt><tt>close(4)                                = 0</tt><tt><br>
        </tt><tt>munmap(0x7f25440dd000, 4096)            = 0</tt><tt><br>
        </tt><tt>write(3, "Apr 08 11:44:04 i-31f62969 kadmi"..., 105) =
          105</tt><tt><br>
        </tt><tt>write(2, "kadmind: No such file or directo"...,
          64kadmind: No such file or directory while initializing,
          aborting) = 64</tt><tt><br>
        </tt><tt>close(3)                                = 0</tt><tt><br>
        </tt><tt>munmap(0x7f25440df000, 4096)            = 0</tt><tt><br>
        </tt><tt>exit_group(1)                           = ?</tt></font><br>
      <br>
      As requested in the linked thread, the dbmodules section looks
      like this:<br>
      <font color="#660000"><tt>[dbmodules]</tt><tt><br>
        </tt><tt>  CLIFF.CLOUDBURRITO.COM = {</tt><tt><br>
        </tt><tt>    db_library = ipadb.so</tt><tt><br>
        </tt><tt>  }</tt><br>
      </font><br>
      Another important item of note, I have another IPA server which
      has not been upgraded from 6.3 yet, and the file is missing there
      too, but kadmind is currently running just fine...<br>
      <br>
      Ideas?<br>
      <br>
      -Patrick<br>
      <br>
      <fieldset class="mimeAttachmentHeader"></fieldset>
      <br>
      <pre wrap="">_______________________________________________
Freeipa-users mailing list
<a class="moz-txt-link-abbreviated" href="mailto:Freeipa-users@redhat.com">Freeipa-users@redhat.com</a>
<a class="moz-txt-link-freetext" href="https://www.redhat.com/mailman/listinfo/freeipa-users">https://www.redhat.com/mailman/listinfo/freeipa-users</a></pre>
    </blockquote>
    <br>
  </body>
</html>