After upgrading ipa to the latest version, login to webui is no longer working
I'm using Rocky Linux 8.9 and these are the IPA installed packages:
[root@ipa02 dnssec]# rpm -qa | grep ipa ipa-server-4.9.12-11.module+el8.9.0+1652+4ee71f6a.x86_64 ipa-server-common-4.9.12-11.module+el8.9.0+1652+4ee71f6a.noarch libipa_hbac-2.9.1-4.el8_9.x86_64 ipa-client-common-4.9.12-11.module+el8.9.0+1652+4ee71f6a.noarch ipa-client-4.9.12-11.module+el8.9.0+1652+4ee71f6a.x86_64 python3-libipa_hbac-2.9.1-4.el8_9.x86_64 sssd-ipa-2.9.1-4.el8_9.x86_64 ipa-common-4.9.12-11.module+el8.9.0+1652+4ee71f6a.noarch python3-ipaclient-4.9.12-11.module+el8.9.0+1652+4ee71f6a.noarch ipa-server-dns-4.9.12-11.module+el8.9.0+1652+4ee71f6a.noarch rocky-logos-ipa-86.3-1.el8.noarch ipa-healthcheck-0.12-3.module+el8.9.0+1434+912e18bd.noarch python3-ipalib-4.9.12-11.module+el8.9.0+1652+4ee71f6a.noarch ipa-healthcheck-core-0.12-3.module+el8.9.0+1434+912e18bd.noarch python3-ipaserver-4.9.12-11.module+el8.9.0+1652+4ee71f6a.noarch ipa-selinux-4.9.12-11.module+el8.9.0+1652+4ee71f6a.noarch
When trying to run this command (as some users suggested): ipa config-mod --enable-sid --add-sids
I'm getting this:
ipa: ERROR: cannot connect to 'https://ipa02.shtar.prod1/ipa/session/json': Exceeded number of tries to forward a request.
On Аўт, 23 сту 2024, Bogdan Stoica via FreeIPA-users wrote:
After upgrading ipa to the latest version, login to webui is no longer working
I'm using Rocky Linux 8.9 and these are the IPA installed packages:
[root@ipa02 dnssec]# rpm -qa | grep ipa ipa-server-4.9.12-11.module+el8.9.0+1652+4ee71f6a.x86_64 ipa-server-common-4.9.12-11.module+el8.9.0+1652+4ee71f6a.noarch libipa_hbac-2.9.1-4.el8_9.x86_64 ipa-client-common-4.9.12-11.module+el8.9.0+1652+4ee71f6a.noarch ipa-client-4.9.12-11.module+el8.9.0+1652+4ee71f6a.x86_64 python3-libipa_hbac-2.9.1-4.el8_9.x86_64 sssd-ipa-2.9.1-4.el8_9.x86_64 ipa-common-4.9.12-11.module+el8.9.0+1652+4ee71f6a.noarch python3-ipaclient-4.9.12-11.module+el8.9.0+1652+4ee71f6a.noarch ipa-server-dns-4.9.12-11.module+el8.9.0+1652+4ee71f6a.noarch rocky-logos-ipa-86.3-1.el8.noarch ipa-healthcheck-0.12-3.module+el8.9.0+1434+912e18bd.noarch python3-ipalib-4.9.12-11.module+el8.9.0+1652+4ee71f6a.noarch ipa-healthcheck-core-0.12-3.module+el8.9.0+1434+912e18bd.noarch python3-ipaserver-4.9.12-11.module+el8.9.0+1652+4ee71f6a.noarch ipa-selinux-4.9.12-11.module+el8.9.0+1652+4ee71f6a.noarch
When trying to run this command (as some users suggested): ipa config-mod --enable-sid --add-sids
I'm getting this:
ipa: ERROR: cannot connect to 'https://ipa02.shtar.prod1/ipa/session/json': Exceeded number of tries to forward a request.
There is a plenty of threads about similar symptoms recently. If using 'ipa' tool in a normal way does not work for you, you can follow https://access.redhat.com/solutions/7052703 which has this case covered under 'if admin users can't authenticate' subsection. This KCS article requires RHEL subscription -- you can get a free developer subscription from https://developers.redhat.com/
freeipa-users@lists.fedorahosted.org