From a0bfbec19f99d01f59299b02a2f5f2f3a76fc1c3 Mon Sep 17 00:00:00 2001 From: Simo Sorce Date: Tue, 11 Jan 2011 10:27:48 -0500 Subject: Use GSSAPI for replication Uses a temporary simple replication agreement over SSL to init the tree. Then once all principals have been created switches replication to GSSAPI. Fixes: https://fedorahosted.org/freeipa/ticket/690 --- install/tools/ipa-replica-install | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) (limited to 'install/tools/ipa-replica-install') diff --git a/install/tools/ipa-replica-install b/install/tools/ipa-replica-install index 76f7f8c9a..3c912a759 100755 --- a/install/tools/ipa-replica-install +++ b/install/tools/ipa-replica-install @@ -205,7 +205,8 @@ def install_krb(config, setup_pkinit=False): pkcs12_info = (config.dir + "/pkinitcert.p12", config.dir + "/pkinit_pin.txt") - krb.create_replica(config.ds_user, config.realm_name, config.host_name, + krb.create_replica(config.ds_user, config.realm_name, + config.master_host_name, config.host_name, config.domain_name, config.dirman_password, ldappwd_filename, kpasswd_filename, setup_pkinit, pkcs12_info) -- cgit