[Freeipa-devel] [PATCH 0016] Adds port to connection error message in ipa-client-install

Tomas Babej tbabej at redhat.com
Wed Oct 3 13:56:56 UTC 2012


On 10/03/2012 03:31 PM, Tomas Babej wrote:
> On 10/02/2012 08:48 PM, Rob Crittenden wrote:
>> Tomas Babej wrote:
>>> On 09/26/2012 09:32 PM, Rob Crittenden wrote:
>>>> Tomas Babej wrote:
>>>>> Hi,
>>>>>
>>>>> Connection error message in ipa-client-install now warns the user
>>>>> about the need of opening 389 port for directory server.
>>>>>
>>>>> https://fedorahosted.org/freeipa/ticket/2816
>>>>>
>>>>> I think this can be pushed as a one-liner.
>>>>
>>>> I think we should list all ports that are required for client 
>>>> enrollment.
>>>>
>>>> From my calculations we need at a minimum tcp ports 80 and 389, either
>>>> or both udp/tcp for port 88 and if NTP is enabled 123 udp for
>>>> enrollment alone. The NTP failure won't cause enrollment to fail
>>>> though, so we may be able to skip that.
>>>>
>>>> Similarly 464 should be enabled but we don't use it during enrollment.
>>>>
>>>> rob
>>> I improved the error message. Please check if there are any issues.
>>>
>>> Thanks
>>>
>>> Tomas
>>
>> This only works if port 389 is blocked, not 88 or 80.
>>
>> rob
> I tested and added the port configuration info message at the appropriate
> places for TCP 80, 88, 389 ports. I also added the info message at the 
> end
> of installation output. Please consider if you agree with this approach.
>
> Tomas
I reworded the commit message, due to the scope of changes made
since the first revision of the patch.

Tomas
-------------- next part --------------
A non-text attachment was scrubbed...
Name: freeipa-tbabej-0016-4-Notify-user-about-necessary-ports-in-ipa-client-inst.patch
Type: text/x-patch
Size: 4332 bytes
Desc: not available
URL: <http://listman.redhat.com/archives/freeipa-devel/attachments/20121003/acb5d37e/attachment.bin>


More information about the Freeipa-devel mailing list