Test Day:2013-04-18 FreeIPA

From FedoraProject

Revision as of 15:10, 19 April 2013 by 192.168.1.12 (Talk)

Jump to: navigation, search
Fedora 19 Test Days
Echo-testing-48px.png
Test FreeIPA 3.2.0 in Fedora 19

Date 2013-04-18
Time all day

Website FreeIPA project, Feature page
IRC #freeipa (webirc, #fedora-test-day (webirc))


Note.png
Can't make the date?
If you come to this page before or after the test day is completed, your testing is still valuable, and you can use the information on this page to test, file any bugs you find, and add your results to the results section.

Contents

What to test?

Today's Test Day will be focused on new features in FreeIPA 3.2.0 - primarily Active Directory (AD) integration, Backup and Restore and CA-less installation

Who's available

Feedback

We need your feedback!

Prerequisite for Test Day

  • A live image. Tips on using a live image are available at FedoraLiveCD.
Architecture SHA256SUM
x86_64 149a7ef93d50d3c40bc26e7f21037add9ac7968c074937ebb72b031cb527db93
i686 8bc3536fbc982a80f4b74baf7530427113e5b2fca24cb098d3565da2d920423c
Note.png
Memory
Please make sure that the LiveCD has enough memory to operate. We recommend:
  • At minimum 2.5 GB of memory for non-graphical run
  • At minimum 3 GB memory for graphical (GNOME) run
  • Test day notes:
    • Please install 'java-atk-wrapper' package in addition to 'freeipa-server' if you are planning to use integrated Dogtag CA. There is a missing dependency on Dogtag side right now.
  yum install koji createrepo
  mkdir /opt/repo
  cd /opt/repo
  for pkg in krb5-1.11.2-2.fc19 sssd-1.10.0-2.fc19.alpha1 realmd-0.13.3-2.fc19 selinux-policy-3.12.1-32.fc19 ; do
     koji download-build $pkg
  done
  createrepo /opt/repo
    • Add local repo file to use with yum, /etc/yum.repos.d/local.repo:
  [local-repo]
  name=Fedora $releasever - $basearch - Local Updates
  failovermethod=priority
  baseurl=file:///opt/repo
  enabled=1
  gpgcheck=0
  
  [local-repo-debuginfo]
  name=Fedora $releasever - $basearch - Local Updates Debug
  failovermethod=priority
  baseurl=file:///opt/repo
  enabled=0
  gpgcheck=0
  
  [local-repo-source]
  name=Fedora $releasever - $basearch - Local Updates Source
  failovermethod=priority
  baseurl=file:///opt/repo
  enabled=0
  gpgcheck=0
    • Now you can run yum update
    • We recommend multiple installed instances for replica or client tests
  • For AD integration test cases, installed Microsoft Active Directory of version 2008 R2 or newer

Test Cases and Instructions

Install/Setup Tests:

Realmd Tests (feature):

Trust Tests:

Other New Features:

Test Results

If you have problems with any of the tests, report a bug to Trac or Bugzilla usually for the component freeipa

Note.png
Filing a bug
If you are unsure about exactly how to file the report or what other information to include, just ask us on IRC and we will help you.

Once you have completed the tests, add your results to the appropriate Results table below, following the example results from the first line as a template. The first column should be your name with a link to your User page in the Wiki if you have one. For each test case, use the result template to enter your result, as shown in the example result line.

To provide extended commands, bugs, etc, or if you don't have a FAS account but want to provide results, please use our public Etherpad

Installation/Setup Results

User 1. Install 2. Replication 3. Client Re-Enrollment References
Sample User
Pass pass
Warning warn
[1]
Fail fail
[2]
  1. Test pass, RHBZ #54321
  2. RHBZ #12345
Shanks
Fail fail
[1]
Warning warn
[2]
  1. Nothing apart from the ones already filed
  2. Improvement: #3573
mrniranjan
Fail fail
[1][2][3]
  1. RHBZ #953413
  2. RHBZ #953432
  3. RHBZ #953485
mvarun
Fail fail
[1][2]
Pass pass
[3]
Pass pass
  1. RHBZ #953464
  2. RHBZ #953432
  3. RHBZ #953541
mkosek
Warning warn
[1][2]
Pass pass
[3]
  1. RHBZ #953464
  2. #3570
  3. Improvement: #3572
pkis
Fail fail
[1]
  1. RHBZ #953464
dspurek
Fail fail
[1][2]
  1. RHBZ #953413
  2. RHBZ #953485
Jan Scotka
Fail fail
[1] [2]
  1. RHBZ #953413
  2. RHBZ #953488
Ana Krivokapic
Warning warn
[1] [2]
Warning warn
[3]
  1. RHBZ #953413
  2. Improvement: #3576
  3. RHBZ #953653
Tomas Babej
Fail fail
[1] [2]
Pass pass
  1. RHBZ #953413
  2. RHBZ #953432
Tomas Dolezal
Fail fail
[1] [2]
  1. encountered RHBZ #953413
  2. enhanced info for RHBZ #953488
Alexander Bokovoy
Warning warn
Pass pass
Pass pass
Petr Viktorin
Warning warn
[1]
  1. RHBZ #953413
Rob Crittenden
Fail fail
[1] [2]
Pass pass
  1. RHBZ #953413
  2. RHBZ #853485
kaleem
Fail fail
[1][2][3]
  1. RHBZ #953413
  2. RHBZ #953432
  3. RHBZ #953485
spoore
Warning warn
[1][2][3][4]
Warning warn
[5]
Pass pass
  1. RHBZ #953413
  2. RHBZ #953432
  3. RHBZ #953485
  4. RHBZ #953617
  5. RHBZ #965653
xdong
Warning warn
[1] [2][3]
  1. RHBZ #953413
  2. RHBZ #953432
  3. RHBZ #953617
Yassir Elley
Fail fail
[1] [2] [3] [4]
  1. RHBZ #953432
  2. RHBZ #953488
  3. RHBZ #953464
  4. I was able to work around the first two bugs, but not around 953464

Realmd Results

User 4. realmd: join 5. realmd: leave 6. realmd: login 7. realmd: ssh 9. realmd: gnome References
Sample User
Pass pass
Warning warn
[1]
Fail fail
[2]
none
none
  1. Test pass, RHBZ #54321
  2. RHBZ #12345
Stefw
Warning warn
[1]
Pass pass
Warning warn
[2]
none
Fail fail
[3]
  1. RHBZ #953486 RHBZ #953528
  2. RHBZ #953116
  3. RHBZ #953453 RHBZ #953477 RHBZ #953445 RHBZ #953174 gnomebz:698263 gnomebz:698262 gnomebz:698276 xdgbz:61858
pkis
Fail fail
[1]
Fail fail
[2]
Pass pass
Fail fail
[3]
Fail fail
[4]
  1. RHBZ #881112RHBZ #953286
  2. RHBZ #953286
  3. RHBZ #953617
  4. RHBZ #953825RHBZ #953829RHBZ #953851RHBZ #953852
dspurek
Fail fail
[1]
Warning warn
[2]
Pass pass
Fail fail
  1. RHBZ #953286
  2. RHBZ #953286
jjaburek
Pass pass
Pass pass
Pass pass
Warning warn
[1]
  1. RHBZ #953825
Petr Viktorin
Warning warn
[1]
Pass pass
Pass pass
Fail fail
  1. #3551
bnater
Pass pass
[1]
Pass pass
[2]
Pass pass
Fail fail
[3]
  1. "You will be prompted for Policy Kit authorization." - No, I wasn't
  2. "You will be prompted for Policy Kit authorization." - No, I wasn't
  3. When trying to ssh from client to server "The authenticity of host 'f19.skynet.com (<no hostip for proxy command>)' can't be established.". This message shouldn't appear.
Yassir Elley
Pass pass
[1]
Pass pass
[2]
Pass pass
  1. working in enforcing mode (after downloading 3.12.1-34)
  2. working in enforcing mode (after downloading 3.12.1-34)
Tomas Dolezal
Pass pass
Pass pass
Pass pass
Warning warn
[1]
Fail fail
[2]
  1. sshd integration
  2. RHBZ #953905
Tomas Babej
Warning warn
[1]
Pass pass
Pass pass
Fail fail
  1. [1] BZ 953936

Trust Results

User 10. Config Domains 11. Configure trust 12. UPN suffixes 13. Trust multi-master 14. AD HBAC References
Sample User
Pass pass
Warning warn
[1]
Fail fail
[2]
Pass pass
Pass pass
  1. Test pass, RHBZ #54321
  2. RHBZ #12345
Alexander Bokovoy
Pass pass
Pass pass
Pass pass
Pass pass
Pass pass
Ana Krivokapic
Pass pass
xdong
Pass pass
Pass pass
Pass pass
Pass pass
Pass pass
spoore
Pass pass
Pass pass
[1]
Pass pass
[2]
Pass pass
  1. ipactl restart
  2. cannot run klist get on w2k8r2
jjaburek
Pass pass

Other New Features Results

User 15. Krb flags 16. Cert-find 17. Backup 18. CA-less References
Sample User
Pass pass
Warning warn
[1]
Fail fail
[2]
none
  1. Test pass, RHBZ #54321
  2. RHBZ #12345
mkosek
Pass pass
Petr Viktorin
Pass pass
Pass pass
kaleem
none
none
none
Pass pass