Messages like this do not get sent nearly enough.

Last week I was faced with the task of rebuilding my two freeipa servers --- 
needed a major OS upgrade, was still running on CentOS 7.... Which is end of 
life.

I was honestly terrified at the prospect, worried that SOMETHING in the process 
would go horribly wrong and I would end up with ldap broken.

I am thrilled to report that it all went absolutely flawlessly.

Deleted one of my two master replicas.
Wiped server, reinstalled fresh with Rocky 8.
Installed freeipa components, installed into the existing list of hosts.
Set new node as an "ipaserver".
Did a ipa-replica-install, joined new node back into the cluster as 
master-master setup.
Tweaked first-master-CA setting to point to the new node.
Passed ipa-healthcheck
Lather, rinse, repeat with the second Centos7 master node.
Done.

Freeipa, under the hood, is an extremely complex animal.    But it also...  
just WORKS.

SO...     just a huge thank you to ALL of the developers, the superusers who 
support the community, list admins, all of you.

The work is really appreciated.

-kcb
_______________________________________________
FreeIPA-users mailing list -- [email protected]
To unsubscribe send an email to [email protected]
Fedora Code of Conduct: 
https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: 
https://lists.fedorahosted.org/archives/list/[email protected]
Do not reply to spam, report it: 
https://pagure.io/fedora-infrastructure/new_issue

Reply via email to