Related to #6934. ipa-replica-install does not tell the user that it is waiting for keys. Since it blocks for up to 5 minutes, it should have a dedicated step or print some sort of information that it is waiting for keys to appear on the peer. At the moment it is just sitting there without any indication why the installation process is not progressing.
... Done configuring Kerberos KDC (krb5kdc). Applying LDAP updates Upgrading IPA:. Estimated time: 1 minute 30 seconds [1/9]: stopping directory server [2/9]: saving configuration [3/9]: disabling listeners [4/9]: enabling DS global lock [5/9]: starting directory server [6/9]: upgrading server [7/9]: stopping directory server [8/9]: restoring configuration [9/9]: starting directory server Done.
no output for 5 minutes
Your system may be partly configured. Run /usr/sbin/ipa-server-install --uninstall to clean up. ipa.ipapython.install.cli.install_tool(CompatServerReplicaInstall): ERROR Timed out trying to obtain keys. ipa.ipapython.install.cli.install_tool(CompatServerReplicaInstall): ERROR The ipa-replica-install command failed. See /var/log/ipareplica-install.log for more information
Metadata Update from @dkupka: - Issue assigned to dkupka
Metadata Update from @mbasti: - Issue set to the milestone: FreeIPA 4.6
master:
Metadata Update from @pvomacka: - Issue close_status updated to: fixed - Issue status updated to: Closed (was: Open)
Log in to comment on this ticket.