#7020 Installation of KRA replica fails
Closed: fixed 6 years ago Opened 6 years ago by dkupka.

From https://bugzilla.redhat.com/show_bug.cgi?id=1449189 :

I've reproduced this and the cause is that there's no Kerberos ticket that could be used to connect to LDAP on master.

From /var/log/ipaserver-kra-install.log:

2017-06-14T11:19:12Z DEBUG Transient error getting keys: '{'info': 'SASL(-1): generic failure: GSSAPI Error: Unspecified GSS failure. Minor code may provide more information (No Kerberos credentials available (default cache: KEYR
ING:persistent:0))', 'desc': 'Local error'}'

I've simple patch that fixes it: https://github.com/freeipa/freeipa/pull/873


Metadata Update from @dkupka:
- Custom field on_review adjusted to https://github.com/freeipa/freeipa/pull/873
- Custom field rhbz adjusted to https://bugzilla.redhat.com/show_bug.cgi?id=1449189

6 years ago

Metadata Update from @stlaz:
- Issue set to the milestone: FreeIPA 4.5.2

6 years ago

master:

  • 342f721 kra: promote: Get ticket before calling custodia

ipa-4-5:

  • 15076a1 kra: promote: Get ticket before calling custodia

Metadata Update from @mbabinsk:
- Issue close_status updated to: fixed
- Issue status updated to: Closed (was: Open)

6 years ago

Login to comment on this ticket.

Metadata