Hi,

the logs for the failed installation would be in
/var/log/ipareplica-ca-install.log and /var/log/pki/pki-ca-spawn-].$DATE.log
During the ca installation the replica also communicates with the master,
you may need to check logs on the other machines.

Which version of IPA / linux is installed on your 2 initial servers?
flo

On Wed, Jun 25, 2025 at 10:51 AM Andreas Binapfl via FreeIPA-users <
[email protected]> wrote:

> Greetings,
>
> i have two ipa servers, both with the ipa master and the ca role. Those
> were configured ~5 years ago.
> Now i try to set up a third server with the goal to replace one of the
> other two.
>
> So i installed a new OEL9 VM. ipa-client-install and ipa-replica-install
> worked without a problem.
> At this stage the new Server, lets call him S3 is registed as ipa master
> and i can manage users etc via the ui.
>
> But when i try to ipa-ca-install the install fails and the only error i
> can find is:
> ipaserver.install.installutils: DEBUG    The ipa-ca-install command
> failed, exception: FileNotFoundError: [Errno 2] No such file or directory:
> '/etc/pki/pki-tomcat/dogtag.keytab'
> Your system may be partly configured.
>
> I don't know how to troubleshoot this further. Can someone point me in the
> right direction?
> --
> _______________________________________________
> FreeIPA-users mailing list -- [email protected]
> To unsubscribe send an email to [email protected]
> Fedora Code of Conduct:
> https://docs.fedoraproject.org/en-US/project/code-of-conduct/
> List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
> List Archives:
> https://lists.fedorahosted.org/archives/list/[email protected]
> Do not reply to spam, report it:
> https://pagure.io/fedora-infrastructure/new_issue
>
-- 
_______________________________________________
FreeIPA-users mailing list -- [email protected]
To unsubscribe send an email to [email protected]
Fedora Code of Conduct: 
https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: 
https://lists.fedorahosted.org/archives/list/[email protected]
Do not reply to spam, report it: 
https://pagure.io/fedora-infrastructure/new_issue

Reply via email to