From 096cc43fe604f9145578d6e5ab32a778563b9737 Mon Sep 17 00:00:00 2001 From: Simo Sorce Date: Wed, 31 Aug 2011 11:39:53 -0400 Subject: install: We do not need a ldap password anymore Our new ipa-kdb driver access ldap via ldapi:// and EXTERNAL auth and doesn't need a bind password anymore. Fixes: https://fedorahosted.org/freeipa/ticket/1743 --- install/tools/ipa-replica-install | 3 +-- install/tools/ipa-replica-prepare | 1 - 2 files changed, 1 insertion(+), 3 deletions(-) (limited to 'install') diff --git a/install/tools/ipa-replica-install b/install/tools/ipa-replica-install index 6b97e0e93..a7c28c1ad 100755 --- a/install/tools/ipa-replica-install +++ b/install/tools/ipa-replica-install @@ -129,7 +129,6 @@ def install_replica_ds(config): def install_krb(config, setup_pkinit=False): krb = krbinstance.KrbInstance() - ldappwd_filename = config.dir + "/ldappwd" kpasswd_filename = config.dir + "/kpasswd.keytab" #pkinit files @@ -141,7 +140,7 @@ def install_krb(config, setup_pkinit=False): krb.create_replica(config.realm_name, config.master_host_name, config.host_name, config.domain_name, config.dirman_password, - ldappwd_filename, kpasswd_filename, + kpasswd_filename, setup_pkinit, pkcs12_info) def install_ca_cert(config): diff --git a/install/tools/ipa-replica-prepare b/install/tools/ipa-replica-prepare index 0c88244b3..647252e49 100755 --- a/install/tools/ipa-replica-prepare +++ b/install/tools/ipa-replica-prepare @@ -214,7 +214,6 @@ def copy_files(realm_name, dir): config_dir = dsinstance.config_dirname(dsinstance.realm_to_serverid(realm_name)) try: - shutil.copy("/var/kerberos/krb5kdc/ldappwd", dir + "/ldappwd") shutil.copy("/var/kerberos/krb5kdc/kpasswd.keytab", dir + "/kpasswd.keytab") shutil.copy("/usr/share/ipa/html/ca.crt", dir + "/ca.crt") if ipautil.file_exists("/usr/share/ipa/html/preferences.html"): -- cgit