Show Posts

This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.


Messages - mig

Pages: [1]
1
Importing configuration to new server fails with following error.


Some error has happened in Zentyal:

There was an error updating LDAP: modify/add: objectClass: value #0 already exists


2013/02/04 14:09:57 ERROR> Backup.pm:1215 EBox::Backup::__ANON__ - Error while restoring: There was an error updating LDAP: modify/add: objectClass: value #0 already exists


Can anybody help with this?

2
Latest patches solved problems with revers lookup and dynamic host update.

3
Installation and Upgrades / DNS revers lookup not contains PTR records
« on: November 16, 2012, 03:45:45 pm »
After adding host and ip address to DNS zone Zentyal should create PTR records in revers lookup zone.
However, revers lookup zone contains only zentyal server record.
No other records exists.

Zentyal 3.0 with latest zentyal components and system updates.
For DNS administration we use default Zentyal portal.


4
Installation and Upgrades / Hemidal KDC without rc4-hmac encryption type
« on: November 02, 2012, 02:19:13 pm »
adding rc4-hmac encryption type to principle evaluate arcfour-hmac-md5.
kadmin: add_enctype -r HTTP/server rc4-hmac
kadmin: get  HTTP/server

returns  Keytypes: arcfour-hmac-md5(pw-salt())[1], des3-cbc-sha1(pw-salt())[1], des3-cbc-md5(pw-salt())[1]

when exported to keytab encryption type is arcfour-hmac-md5


Problem is that Firefox and IE respond with rc4-hmac (23) encryption type.
Error in localhost.log for tomcat7 on ubuntu 12.04 is
KrbException: Invalid argument (400) - Cannot find key of appropriate type to decrypt AP REP - RC4 with HMAC
because client and server does not use same encryption type.

How to set encryption type of rc4-hmac for principle or
how to convince browser to user arcfour-hmac-md5?

I am trying to setup SSO on tomcat7 with spnego.

5
Depends on your configuration

I think, that by default is running only on 80.
443 is occupied by administration.
 

6
Installation and Upgrades / Send in name of anaother user fails
« on: October 08, 2012, 03:44:05 pm »
User account "User1" is configured with user delegate which is "User2".

"User2" can send email in name of "User1" from webaccess.

However, when user "User2" is using Thunderbird and sending email in name of "User1" with SMTP protocol is getting reject.

Oct  8 15:08:51 coresbs postfix/smtpd[32249]: NOQUEUE: reject: RCPT from unknown[192.168.1.185]: 553 5.7.1 <support@domain.com>: Sender address rejected: not owned by user user2@domain.com; from=<user1@domain.com> to=<user3@domain.com> proto=ESMTP helo=<[192.168.1.185]>

7
Hi

I been install z-push 2.
Change apache vdir to z-push instead of d-push
And it works.


8
Hi,

Active-sync synchronization for emails working with no problem.
However, synchronization of contacts and calendar fails.


Zentyal 3.0 updated to latest version.

Only error which I can found is in apache sll_access.log

176.76.115.47 - miha [04/Oct/2012:09:12:33 +0200] "POST /Microsoft-Server-ActiveSync?Cmd=Sync&User=miha&DeviceId=HTC9384a5523a8d7aa8588d38e88a17f&DeviceType=htcpyramid HTTP/1.1" 500 1046 "-" "Android-EAS/4.5.2214402547.372503"

9
Thanks
I will wait for this?

10
Hi,

I have trouble to enabling SSO on /webaccess in Zentyal 3.0.
When SSO is enabled, it's always popoup with username and password dialog box. Then you need to type your username and password to access webaccess.
When SSO in disabled I got regular login page for Zarafa appears.

User has all necessary kerberos tickets.
Access to samba shares works OK from clients Ubuntu 12.04 with nautilus and from Windows

~$ klist
Ticket cache: FILE:/tmp/krb5cc_1000_hcBDnb
Default principal: mig@DOMAIN.LAN


Valid starting    Expires           Service principal
21/09/2012 13:51  21/09/2012 23:51  krbtgt/DOMAIN.LAN@DOMAIN.LAN
   renew until 22/09/2012 13:51
21/09/2012 13:51  21/09/2012 23:51  HTTP/zentyal.domain.lan@
   renew until 22/09/2012 13:51
21/09/2012 13:51  21/09/2012 23:51  HTTP/zentyal.domain.lan@DOMAIN.LAN
   renew until 22/09/2012 13:51
21/09/2012 13:52  21/09/2012 23:51  cifs/zentyal@DOMAIN.LAN
   renew until 22/09/2012 13:51




The only message related to login request is in apache log:
[Fri Sep 21 15:03:26 2012] [error] [client 192.168.1.98] gss_accept_sec_context() failed: Unspecified GSS failure.  Minor code may provide more information (, )


11
Disable SSO on gropupware.

Pages: [1]