[Freeipa-users] SSSD Failover does not work

Dmitri Pal dpal at redhat.com
Fri Jan 17 14:46:08 UTC 2014


On 01/17/2014 09:35 AM, Petr Spacek wrote:
> On 17.1.2014 15:13, Stanislav Zidek wrote:
>> Hi everybody,
>>
>> I'm struggling with IPA failover and would be grateful for any advice.
>>
>> I've setup a IPA server, added some client machines and users, then
>> created a replica, added replica address to /etc/sssd/sssd.conf on
> BTW the best approach is to use SRV records in DNS so clients will
> automatically pick up new replicas. You will not need to touch
> sssd.conf at all.
>
>> clients. Everything fine so far. But when I simulate problem with first
>> IPA server (by issuing "service ipa stop"). Then things start to get
>> weird to me. I cannot login to clients, until I make a "service sssd
>> restart" on them and wait few minutes.
>>
>> Am I doing something wrong? Is this expected behaviour?
> I will let SSSD guys to comment on this.
>
You would need to up the debug_level to 6 on SSSD, restart it, then
simulate the situation and provide sanitized logs and sssd configuration
file.

-- 
Thank you,
Dmitri Pal

Sr. Engineering Manager for IdM portfolio
Red Hat Inc.


-------------------------------
Looking to carve out IT costs?
www.redhat.com/carveoutcosts/






More information about the Freeipa-users mailing list