IDM server Web UI lopin fails after upgrading server to RHEL 7.5
I recently upgraded my IDM server from RHEL 7.4 to RHEL 7.5 and now I can not login to Web UI even though I can do 'kinit admin' from the terminal. I see the following messages;
gssproxy[921]: (OID: { 1 2 840 113554 1 2 2 }) Unspecified GSS failure. Minor code may provide more information, Preauthentication failed
Any help would be appreciated.
Responses
Mine completely fell apart after upgrading to 7.5 and only just recently got it back online. It wasn't just the gui for me. I'm not sure what specifically broke (yet) but had to work with support to get it back in working order. Basically I upgraded the OS and then when I tried doing the ipa-server-upgrade, it hung up and I wasn't able to bring the services up. Working with support we did several variations of package reinstalls. I could not get dirsrv service running and found that the "nsslapd-port" and "nsslapd-security" values were being set back to default in (0 and off) in the lde.dif file. They had me change this to '389' and 'on' respectively. I think I was able to get dirsrv.target running at this point and the ipa-server-upgrade completed.
I still had some lingering issues getting the services to start via ipactl start, but they had me start them manually and it worked up until samba (smb). I had to reinstall the ipa-server-trust-ad package: yum install ipa-server-trust-ad ipa-adtrust-install --add-sids After that I was able to start smb. Had to enable ipa.service and sssd.service, otherwise the services weren't starting on startup.
This is a little incomplete because there were a bunch of steps and attempts all of which I didn't get to document, but hopefully this fills in some gaps for people affected by the move to 7.5.
Welcome! Check out the Getting Started with Red Hat page for quick tours and guides for common tasks.
