Bug 795407 - ipa-client-install doesn't discovery ipa-server manualy
Summary: ipa-client-install doesn't discovery ipa-server manualy
Keywords:
Status: CLOSED CURRENTRELEASE
Alias: None
Product: Red Hat Enterprise Linux 5
Classification: Red Hat
Component: ipa-client
Version: 5.7
Hardware: x86_64
OS: Linux
unspecified
high
Target Milestone: rc
: ---
Assignee: Rob Crittenden
QA Contact: IDM QE LIST
URL:
Whiteboard:
Depends On:
Blocks:
TreeView+ depends on / blocked
 
Reported: 2012-02-20 12:38 UTC by bebopt
Modified: 2012-02-21 15:16 UTC (History)
1 user (show)

Fixed In Version:
Doc Type: Bug Fix
Doc Text:
Clone Of:
Environment:
Last Closed: 2012-02-21 15:16:39 UTC
Target Upstream Version:


Attachments (Terms of Use)
log ipaclient install (1.17 KB, text/plain)
2012-02-20 12:46 UTC, bebopt
no flags Details

Description bebopt 2012-02-20 12:38:21 UTC
If try to lunch:

ipa-client-install --server rvvmipa01cl.collaudo.rve --domain collaudo.rve

with /etc/resolv.conf configurated correctly and dns server is Active Directory, the ipa-clent-install try to get CA from DNS server instead of ipa-server


Additional info:

rvvmipa01cl  :  IPA_server on RHEL 6.2
rvvmdcl02cw  :  ActiveDirectory

Comment 1 bebopt 2012-02-20 12:46:26 UTC
Created attachment 564425 [details]
log ipaclient install

Comment 3 Rob Crittenden 2012-02-20 14:25:11 UTC
I believe this will be fixed in RHEL 5.8 by the rebase to upstream FreeIPA 2.1.3.

Comment 4 bebopt 2012-02-20 14:30:14 UTC
Does not exist a workaround for 5.7?

Comment 5 Rob Crittenden 2012-02-20 21:00:57 UTC
Other than pointing to another DNS server that isn't serving the AD SRV records, no.

Comment 6 bebopt 2012-02-21 10:46:08 UTC
i haven't others DNS server.

My workaround is: 
 - Remove any entry of /etc/resolv.conf
 - lunch installation with paramenter --server --domain --hostname
 - Repopulate the /etc/resolv.conf

Comment 7 Rob Crittenden 2012-02-21 15:16:39 UTC
The other option is to manually enroll the client, it is just a bit of extra work.

RHEL 5.8 was released today, you might try that package.


Note You need to log in before you can comment on or make changes to this bug.