<html>
<head>
<meta content="text/html; charset=ISO-8859-1"
http-equiv="Content-Type">
</head>
<body bgcolor="#FFFFFF" text="#000000">
<div class="moz-cite-prefix">On 12/19/2014 05:07 AM, Ben .T.George
wrote:<br>
</div>
<blockquote
cite="mid:CA+C_GOVN5xQuVsv95xs14VWhP6YVN-67YAmY4nCEvo4x+ympLg@mail.gmail.com"
type="cite">
<div dir="ltr">Hi List
<div><br>
</div>
<div>i was trying to add linux machine manually as client. iwas
following this <a moz-do-not-send="true"
href="http://docs.fedoraproject.org/en-US/Fedora/15/html/FreeIPA_Guide/linux-manual.html">http://docs.fedoraproject.org/en-US/Fedora/15/html/FreeIPA_Guide/linux-manual.html</a></div>
<div><br>
</div>
<div>while doing ipa-getkeytab on FreeIpa server, i am getting
error like " Operation failed! PrincipalName not found."</div>
<div><br>
</div>
<div>please help me to solve this issue.</div>
</div>
</blockquote>
<br>
When you do client enrollment using ipa-client you can run it in
several ways:<br>
- high level admin that has full privileges in IPA (recommended just
for demo and POC purposes)<br>
- low level admin that has permission to provision systems. Such
admin does not have privilege to create the host entry during
registration. The entry must be there. The error you see above
indicates that the host entry does not exist. <br>
- automated system. In this case the entry has to be precereated and
one can set or request IPA to generate a registration code that can
be used once as an OTP to register client.<br>
<br>
So if you do things manually you need to create host entry first
manually on the server side.<br>
<br>
<blockquote
cite="mid:CA+C_GOVN5xQuVsv95xs14VWhP6YVN-67YAmY4nCEvo4x+ympLg@mail.gmail.com"
type="cite">
<div dir="ltr">
<div><br>
</div>
<div><br>
</div>
<div>thanks & Regards,</div>
<div>Ben<br clear="all">
<div><br>
</div>
</div>
</div>
<br>
<fieldset class="mimeAttachmentHeader"></fieldset>
<br>
</blockquote>
<br>
<br>
<pre class="moz-signature" cols="72">--
Thank you,
Dmitri Pal
Sr. Engineering Manager IdM portfolio
Red Hat, Inc.</pre>
</body>
</html>