Home Forums OS X Server and Client Discussion Open Directory OD Replica started but not Kerberos

Viewing 3 posts - 1 through 3 (of 3 total)
  • Author
    Posts
  • #369225
    lyndonl
    Participant

    Hi Folks

    I have a situation where for some reason still unknown to me the Replica OD Server stopped working yesterday
    I have since changed the replica server to a stand alone server and back to a replica server. the OD replica is now “running”

    From Server Manager
    Lookupd Running
    Netinfo Local
    LDAP Running
    Password Server Running
    Kerberos Stopped

    Although The Master seems to replicate to the Replica Server (not sure that it does looking at the logs) the Replica Server does not authenticate any users
    I am guessing this is because of the Kerberos server not running.

    This is the Password Service Replication Log on the Replica Server
    Jun 5 2007 09:55:13 Updated 5 records, rejected 14 from the parent server
    Jun 5 2007 09:55:14 SYNC PULL: providing data to 172.20.96.8 after 06/05/2007 09:55:11 AM
    Jun 5 2007 09:55:14 SYNC PULL: updating 6 records
    Jun 5 2007 09:55:18 Keberos database dump failed
    Jun 5 2007 09:55:18 Keberos database dump failed
    Jun 5 2007 09:55:18 Got error 1 updating Kerberos records
    Jun 5 2007 09:55:18 Updated 11 records, rejected 4 from the parent server
    Jun 5 2007 09:55:18 updating replica list with on-disk changes
    Jun 5 2007 09:55:18 Synchronizing with “Parent”
    Jun 5 2007 09:55:18 Keberos database dump failed
    Jun 5 2007 09:55:18 Connecting to 172.20.96.8, synchronizing all records since 06/05/2007 09:55:18 AM
    Jun 5 2007 09:55:18 The remote replica list has 1 parent and 1 replica.
    Jun 5 2007 09:55:18 syncfile: /var/db/authserver/apsSyncFi1181030118.573827
    Jun 5 2007 09:55:18 Keberos database dump failed
    Jun 5 2007 09:55:18 No Kerberos records to update
    Jun 5 2007 09:55:18 DoSync: the next replication will occur on 06/05/2007 at 10:00:00 AM
    Jun 5 2007 09:55:23 Keberos database dump failed
    Jun 5 2007 09:55:23 Got error 1 updating Kerberos records
    Jun 5 2007 09:55:23 Updated 5 records, rejected 5 from the parent server

    The DNS stuff looks correct both servers resolve (forward and reverse entries)

    Does anyone have any idea where I can start looking

    #369292
    jskoland
    Participant

    The same thing has happened to me. I sure would like to know how to fix this problem

    #369295
    lyndonl
    Participant

    Well I got mine sorted out
    im still not sure what caused it and I am not sure the solution I used will work for you
    but all I did was ssh into both the boxes su to root and then in the root home directory i just removed the known_hosts file in the .ssh directory
    and then set the second server back to a replica server using all the usual details like root password IP address of the server etc as per the Server Admin tool

Viewing 3 posts - 1 through 3 (of 3 total)
  • You must be logged in to reply to this topic.

Comments are closed