2008-03-17 17:04:49 -05:00
. \" A man page for ipa-replica-prepare
. \" Copyright (C) 2008 Red Hat, Inc.
2012-08-29 10:32:03 -05:00
. \"
2010-12-09 06:59:11 -06:00
. \" This program is free software; you can redistribute it and/or modify
. \" it under the terms of the GNU General Public License as published by
. \" the Free Software Foundation, either version 3 of the License, or
. \" (at your option) any later version.
2012-08-29 10:32:03 -05:00
. \"
2008-03-17 17:04:49 -05:00
. \" This program is distributed in the hope that it will be useful, but
. \" WITHOUT ANY WARRANTY; without even the implied warranty of
. \" MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU
. \" General Public License for more details.
2012-08-29 10:32:03 -05:00
. \"
2010-12-09 06:59:11 -06:00
. \" You should have received a copy of the GNU General Public License
. \" along with this program. If not, see <http://www.gnu.org/licenses/>.
2012-08-29 10:32:03 -05:00
. \"
2008-03-17 17:04:49 -05:00
. \" Author: Rob Crittenden <rcritten@redhat.com>
2012-08-29 10:32:03 -05:00
. \"
2011-09-05 04:04:17 -05:00
.TH "ipa-replica-prepare" "1" "Mar 14 2008" "FreeIPA" "FreeIPA Manual Pages"
2008-03-17 17:04:49 -05:00
.SH "NAME"
ipa\- replica\- prepare \- Create an IPA replica file
.SH "SYNOPSIS"
ipa\- replica\- prepare [\fI OPTION\fR ]... hostname
.SH "DESCRIPTION"
Generates a replica file that may be used with ipa\- replica\- install to create a replica of an IPA server.
A replica can only be created on an IPA server installed with ipa\- server\- install (the first server).
You must provide the fully\- qualified hostname of the machine you want to install the replica on and a host\- specific replica_file will be created. It is host\- specific because SSL server certificates are generated as part of the process and they are specific to a particular hostname.
2012-08-29 10:32:03 -05:00
If IPA manages the DNS for your domain, you should either use the \fB \- \- ip\- address\fR option or add the forward and reverse records manually using IPA plugins.
2011-02-13 11:30:18 -06:00
2008-03-17 17:04:49 -05:00
Once the file has been created it will be named replica\- hostname. This file can then be moved across the network to the target machine and a new IPA replica setup by running ipa\- replica\- install replica\- hostname.
2012-08-29 10:32:03 -05:00
A replica should only be installed on the same or higher version of IPA on the remote system.
2008-07-11 10:34:29 -05:00
.SH "OPTIONS"
.TP
\fB \- \- dirsrv_pkcs12\fR =\fI FILE\fR
2011-10-04 17:29:45 -05:00
PKCS#12 file containing the Directory Server SSL Certificate and Private Key
2008-07-11 10:34:29 -05:00
.TP
\fB \- \- http_pkcs12\fR =\fI FILE\fR
2011-10-04 17:29:45 -05:00
PKCS#12 file containing the Apache Server SSL Certificate and Private Key
.TP
\fB \- \- pkinit_pkcs12\fR =\fI FILE\fR
PKCS#12 file containing the Kerberos KDC Certificate and Private Key
2008-07-11 10:34:29 -05:00
.TP
\fB \- \- dirsrv_pin\fR =\fI DIRSRV_PIN\fR
The password of the Directory Server PKCS#12 file
.TP
\fB \- \- http_pin\fR =\fI HTTP_PIN\fR
The password of the Apache Server PKCS#12 file
2009-11-23 09:16:58 -06:00
.TP
2011-05-04 03:09:44 -05:00
\fB \- \- pkinit_pin\fR =\fI PKINIT_PIN\fR
2011-10-04 17:29:45 -05:00
The password of the Kerberos KDC PKCS#12 file
2011-05-04 03:09:44 -05:00
.TP
\fB \- p\fR \fI DM_PASSWORD\fR , \fB \- \- password\fR =\fI DM_PASSWORD\fR
Directory Manager (existing master) password
.TP
2009-11-23 09:16:58 -06:00
\fB \- \- ip\- address\fR =\fI IP_ADDRESS\fR
IP address of the replica server. If you provide this option, the A and PTR records will be added to the DNS.
2011-05-04 03:09:44 -05:00
.TP
2011-07-11 03:14:53 -05:00
\fB \- \- reverse\- zone\fR =\fI REVERSE_ZONE\fR
The reverse DNS zone to use
.TP
\fB \- \- no\- reverse\fR
Do not create reverse DNS zone
.TP
2011-05-04 03:09:44 -05:00
\fB \- \- ca\fR =\fI CA_FILE\fR
Location of CA PKCS#12 file, default /root/cacert.p12
.TP
\fB \- \- no\- pkinit\fR
Disables pkinit setup steps
2012-08-10 07:59:58 -05:00
.TP
\fB \- \- debug\fR
Prints info log messages to the output
2008-03-17 17:04:49 -05:00
.SH "EXIT STATUS"
0 if the command was successful
1 if an error occurred