Bug 1199520
| Summary: | [RFE] Introduce single upgrade tool - ipa-server-upgrade | ||
|---|---|---|---|
| Product: | Red Hat Enterprise Linux 7 | Reporter: | Martin Kosek <mkosek> |
| Component: | ipa | Assignee: | IPA Maintainers <ipa-maint> |
| Status: | CLOSED ERRATA | QA Contact: | Namita Soman <nsoman> |
| Severity: | unspecified | Docs Contact: | |
| Priority: | medium | ||
| Version: | 7.0 | CC: | jcholast, pvoborni, rcritten, tbabej |
| Target Milestone: | rc | Keywords: | FutureFeature |
| Target Release: | --- | ||
| Hardware: | Unspecified | ||
| OS: | Unspecified | ||
| Whiteboard: | |||
| Fixed In Version: | ipa-4.2.0-1.el7 | Doc Type: | Enhancement |
| Doc Text: | Story Points: | --- | |
| Clone Of: | Environment: | ||
| Last Closed: | 2015-11-19 12:01:49 UTC | Type: | --- |
| Regression: | --- | Mount Type: | --- |
| Documentation: | --- | CRM: | |
| Verified Versions: | Category: | --- | |
| oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
| Cloudforms Team: | --- | Target Upstream Version: | |
| Embargoed: | |||
| Bug Depends On: | |||
| Bug Blocks: | 1181710, 1199516 | ||
|
Description
Martin Kosek
2015-03-06 14:44:36 UTC
Remove unused PRE_SCHEMA_UPDATE master: https://fedorahosted.org/freeipa/changeset/d3f5d5d1ff5a730d5c268456015fee36a7dc5bff master: https://fedorahosted.org/freeipa/changeset/bb1d7a741c3e8c932e13e642adb1799957becb0c https://fedorahosted.org/freeipa/changeset/10bc6bd0bf96bda733500e12e7a8c2463ebf7fe4 https://fedorahosted.org/freeipa/changeset/144bc6c1ebc29cc0bbe54d8f8a6bc5a6cf026a90 https://fedorahosted.org/freeipa/changeset/0c7274ead8670951b1f07039b68014b06418024d https://fedorahosted.org/freeipa/changeset/a42fcfc18bb94fbf97ec310dbb920e045b0473a5 Upstream ticket: https://fedorahosted.org/freeipa/ticket/3448 Upstream ticket: https://fedorahosted.org/freeipa/ticket/3560 Upstream ticket: https://fedorahosted.org/freeipa/ticket/4834 Upstream ticket: https://fedorahosted.org/freeipa/ticket/4984 master: https://fedorahosted.org/freeipa/changeset/39426966063b3f3deced90ef3f5d0a87801d7eab https://fedorahosted.org/freeipa/changeset/9f049ca14403f3696d54d186e6b1b15181f055df https://fedorahosted.org/freeipa/changeset/3debc7b2b54b7926dcd2b26a37b3dc0677c3bc61 master: https://fedorahosted.org/freeipa/changeset/5783d0c832a430f0f3b1a9b5ba083cda934d3397 https://fedorahosted.org/freeipa/changeset/520bbd001b68bc51a79c2b4a9684fb1c12a582cd master: https://fedorahosted.org/freeipa/changeset/7660f40e2bedf6dce5c569f1be64a80934a952a3 https://fedorahosted.org/freeipa/changeset/6c438fff337794ac168a9b8aa7269b9afff7c95f https://fedorahosted.org/freeipa/changeset/f6e3088b87cce1e0aefa9afbfeaf00eaea02dff2 https://fedorahosted.org/freeipa/changeset/78baeeb77c867d00c9c1ceb41c58512e487abb0c https://fedorahosted.org/freeipa/changeset/99c0b918a7cdf4ea6f24b4cbe687d9cafd21de24 Upstream work on the upgrader were done. The list of major changes can be retrieved for example from FreeIPA 4.2 Alpha release notes: http://www.freeipa.org/page/Releases/4.2.0.alpha1#Changes_to_upgrade Verified upgrading master server: Installed 7.1 server (ipa-server-4.1.0-18.el7.x86_64) added user on this server yum installed 7.2 pkg - ipa-server-4.2.0-8.el7.x86_64 Ran ipa-server-upgrade to upgrade the server Upgrading IPA: [1/10]: stopping directory server [2/10]: saving configuration [3/10]: disabling listeners [4/10]: enabling DS global lock [5/10]: starting directory server [6/10]: updating schema [7/10]: upgrading server [8/10]: stopping directory server [9/10]: restoring configuration [10/10]: starting directory server Done. Update complete Upgrading the configuration of the IPA services [Verifying that root certificate is published] Failed to backup CS.cfg: Dogtag must be stopped when creating backup of /var/lib/pki/pki-tomcat/conf/ca/CS.cfg [Migrate CRL publish directory] CRL tree already moved [Verifying that CA proxy configuration is correct] [Verifying that KDC configuration is using ipa-kdb backend] [Fix DS schema file syntax] Syntax already fixed [Removing RA cert from DS NSS database] RA cert already removed [Enable sidgen and extdom plugins by default] [Updating mod_nss protocol versions] Protocol versions already updated [Fixing trust flags in /etc/httpd/alias] Trust flags already processed [Removing self-signed CA] [Checking for deprecated KDC configuration files] [Checking for deprecated backups of Samba configuration files] [Setting up Firefox extension] [Add missing CA DNS records] IPA CA DNS records already processed [Removing deprecated DNS configuration options] [Ensuring minimal number of connections] [Enabling serial autoincrement in DNS] [Updating GSSAPI configuration in DNS] [Updating pid-file configuration in DNS] Changes to named.conf have been made, restart named [Upgrading CA schema] CA schema update complete (no changes) [Verifying that CA audit signing cert has 2 year validity] [Update certmonger certificate renewal configuration to version 3] [Enable PKIX certificate path discovery and validation] PKIX already enabled [Authorizing RA Agent to modify profiles] [Ensuring CA is using LDAPProfileSubsystem] [Ensuring presence of included profiles] [Add default CA ACL] Default CA ACL already added The IPA services were upgraded The ipa-server-upgrade command was successful Upgrading IPA services and verified users added in 7.1 are available on upgraded server Since the problem described in this bug report should be resolved in a recent advisory, it has been closed with a resolution of ERRATA. For information on the advisory, and where to find the updated files, follow the link below. If the solution does not work for you, open a new bug report. https://rhn.redhat.com/errata/RHBA-2015-2362.html |