Description of problem:
ipa-replica-install --domain=<IPA primary domain> option does not work and always fails.
Version-Release number of selected component (if applicable):
Steps to Reproduce:
$ ipa-replica-install --admin-password=<password> --principal=admin --domain=<IPA primary domain> --unattended --setup-dns --auto-forwarders
Checking DNS domain dom-076.abc.idm.lab.eng.brq.redhat.com, please wait ...
Usage: ipa-replica-install [options] REPLICA_FILE
ipa-replica-install: error: option --domain: DNS zone <IPA primary domain> already exists in DNS and is handled by server(s): <some IPA servers>
ipa.ipapython.install.cli.install_tool(Replica): ERROR The ipa-replica-install command failed. See /var/log/ipareplica-install.log for more information
Installation should be allowed if all the options are correct.
This is a regression as this used to work in the past.
Workaround for domain level 1 is easy: Install IPA client first and then run ipa-replica-install without --domain option.
Created attachment 1198167 [details]
Verified using IPA version::
Marking BZ as verified.
Since the problem described in this bug report should be
resolved in a recent advisory, it has been closed with a
resolution of ERRATA.
For information on the advisory, and where to find the updated
files, follow the link below.
If the solution does not work for you, open a new bug report.