#5663 ipa-adtrust-install sometimes create incorrect SRV records
Closed: Fixed None Opened 5 years ago by pspacek.

ipa-adtrust-install sometimes use relative names in auto-generated SRV records instead of FQDNs. This, depending on hostnames of IPA serverm, can result in incorrect SRV records.

Example:

  • IPA domain = dom-058-103.abc.idm.lab.eng.brq.redhat.com
  • IPA master = vm-058-103.abc.idm.lab.eng.brq.redhat.com
  • IPA replica = vm-058-104.abc.idm.lab.eng.brq.redhat.com

Resulting SRV records:

_ldap._tcp.Default-First-Site-Name._sites.dc._msdcs.dom-058-103.abc.idm.lab.eng.brq.redhat.com. 86400 IN SRV 0 100 389 vm-058-104.abc.idm.lab.eng.brq.redhat.com.
_ldap._tcp.Default-First-Site-Name._sites.dc._msdcs.dom-058-103.abc.idm.lab.eng.brq.redhat.com. 86400 IN SRV 0 100 389 vm-058-103.dom-058-103.abc.idm.lab.eng.brq.redhat.com.

master:

  • 72e4a36 Fix ipa-adtrust-install to always generate SRV records with FQDNs

ipa-4-3:

  • 0256f6b Fix ipa-adtrust-install to always generate SRV records with FQDNs

Metadata Update from @pspacek:
- Issue assigned to pspacek
- Issue set to the milestone: FreeIPA 4.3.1

4 years ago

Login to comment on this ticket.

Metadata