Home › Forums › OS X Server and Client Discussion › Open Directory › OD Replica started but not Kerberos
- This topic has 2 replies, 2 voices, and was last updated 17 years, 10 months ago by
lyndonl.
-
AuthorPosts
-
June 5, 2007 at 7:57 am #369225
lyndonl
ParticipantHi Folks
I have a situation where for some reason still unknown to me the Replica OD Server stopped working yesterday
I have since changed the replica server to a stand alone server and back to a replica server. the OD replica is now “running”From Server Manager
Lookupd Running
Netinfo Local
LDAP Running
Password Server Running
Kerberos StoppedAlthough The Master seems to replicate to the Replica Server (not sure that it does looking at the logs) the Replica Server does not authenticate any users
I am guessing this is because of the Kerberos server not running.This is the Password Service Replication Log on the Replica Server
Jun 5 2007 09:55:13 Updated 5 records, rejected 14 from the parent server
Jun 5 2007 09:55:14 SYNC PULL: providing data to 172.20.96.8 after 06/05/2007 09:55:11 AM
Jun 5 2007 09:55:14 SYNC PULL: updating 6 records
Jun 5 2007 09:55:18 Keberos database dump failed
Jun 5 2007 09:55:18 Keberos database dump failed
Jun 5 2007 09:55:18 Got error 1 updating Kerberos records
Jun 5 2007 09:55:18 Updated 11 records, rejected 4 from the parent server
Jun 5 2007 09:55:18 updating replica list with on-disk changes
Jun 5 2007 09:55:18 Synchronizing with “Parent”
Jun 5 2007 09:55:18 Keberos database dump failed
Jun 5 2007 09:55:18 Connecting to 172.20.96.8, synchronizing all records since 06/05/2007 09:55:18 AM
Jun 5 2007 09:55:18 The remote replica list has 1 parent and 1 replica.
Jun 5 2007 09:55:18 syncfile: /var/db/authserver/apsSyncFi1181030118.573827
Jun 5 2007 09:55:18 Keberos database dump failed
Jun 5 2007 09:55:18 No Kerberos records to update
Jun 5 2007 09:55:18 DoSync: the next replication will occur on 06/05/2007 at 10:00:00 AM
Jun 5 2007 09:55:23 Keberos database dump failed
Jun 5 2007 09:55:23 Got error 1 updating Kerberos records
Jun 5 2007 09:55:23 Updated 5 records, rejected 5 from the parent serverThe DNS stuff looks correct both servers resolve (forward and reverse entries)
Does anyone have any idea where I can start looking
June 12, 2007 at 9:28 pm #369292jskoland
ParticipantThe same thing has happened to me. I sure would like to know how to fix this problem
June 13, 2007 at 4:30 am #369295lyndonl
ParticipantWell I got mine sorted out
im still not sure what caused it and I am not sure the solution I used will work for you
but all I did was ssh into both the boxes su to root and then in the root home directory i just removed the known_hosts file in the .ssh directory
and then set the second server back to a replica server using all the usual details like root password IP address of the server etc as per the Server Admin tool -
AuthorPosts
- You must be logged in to reply to this topic.
Comments are closed