#7020 Installation of KRA replica fails
Closed: fixed Opened by dkupka.

From https://bugzilla.redhat.com/show_bug.cgi?id=1449189 :

I've reproduced this and the cause is that there's no Kerberos ticket that could be used to connect to LDAP on master.

From /var/log/ipaserver-kra-install.log:

2017-06-14T11:19:12Z DEBUG Transient error getting keys: '{'info': 'SASL(-1): generic failure: GSSAPI Error: Unspecified GSS failure. Minor code may provide more information (No Kerberos credentials available (default cache: KEYR
ING:persistent:0))', 'desc': 'Local error'}'

I've simple patch that fixes it: https://github.com/freeipa/freeipa/pull/873


Metadata Update from @dkupka:
- Custom field on_review adjusted to https://github.com/freeipa/freeipa/pull/873
- Custom field rhbz adjusted to https://bugzilla.redhat.com/show_bug.cgi?id=1449189

Metadata Update from @stlaz:
- Issue set to the milestone: FreeIPA 4.5.2

master:

  • 342f72140f9bd8b8db19f469ae4c56cac7492901 kra: promote: Get ticket before calling custodia

ipa-4-5:

  • 15076a1c2b0fb31dce3903e5f50cab9edf68ad07 kra: promote: Get ticket before calling custodia

Metadata Update from @mbabinsk:
- Issue close_status updated to: fixed
- Issue status updated to: Closed (was: Open)

Metadata