[Freeipa-users] Re: FreeIPA and AD

2019-03-07 Thread François Cami via FreeIPA-users
There is also a lot of documentation on https://access.redhat.com specifically: "INTEGRATING A LINUX DOMAIN WITH AN ACTIVE DIRECTORY DOMAIN: CROSS-FOREST TRUST" https://access.redhat.com/documentation/en-us/red_hat_enterprise_linux/7/html/windows_integration_guide/trust "USING ID VIEWS IN ACTIVE

[Freeipa-users] Re: FreeIPA and AD

2019-03-07 Thread John Keates via FreeIPA-users
The documentation on this is pretty good. Basically, you can ’trust’ AD from FreeIPA, which means the users from AD can be used in IPA. Groups too. Passwords must be set and reset in AD, but everything you need for Linux (SSH keys, host rules etc) can be done in IPA. https://www.freeipa.org/pag

[Freeipa-users] Re: FreeIPA and AD

2018-09-12 Thread Ryan via FreeIPA-users
Whoa …… thanks for this. Now I think I am on the right path now. Thanks for the help. R > On 12 Sep 2018, at 13:44, Alexander Bokovoy via FreeIPA-users > wrote: > > On ke, 12 syys 2018, Ryan via FreeIPA-users wrote: >> >> >>> On 12 Sep 2018, at 13:07, Alexander Bokovoy via FreeIPA-users >

[Freeipa-users] Re: FreeIPA and AD

2018-09-12 Thread Alexander Bokovoy via FreeIPA-users
On ke, 12 syys 2018, Ryan via FreeIPA-users wrote: On 12 Sep 2018, at 13:07, Alexander Bokovoy via FreeIPA-users wrote: On ke, 12 syys 2018, Ryan via FreeIPA-users wrote: Hi, All Off the bat I would like to say being new to freeIPA and rolling out successful deployment to manage our serve

[Freeipa-users] Re: FreeIPA and AD

2018-09-12 Thread Ryan via FreeIPA-users
> On 12 Sep 2018, at 13:07, Alexander Bokovoy via FreeIPA-users > wrote: > > On ke, 12 syys 2018, Ryan via FreeIPA-users wrote: >> Hi, All >> >> Off the bat I would like to say being new to freeIPA and rolling out >> successful deployment to manage our servers has been amazing, very few >> hi

[Freeipa-users] Re: FreeIPA and AD

2018-09-12 Thread Alexander Bokovoy via FreeIPA-users
On ke, 12 syys 2018, Ryan via FreeIPA-users wrote: Hi, All Off the bat I would like to say being new to freeIPA and rolling out successful deployment to manage our servers has been amazing, very few hiccups. Which brings me to my next question, I have been asked if FreeIPA can be uses with Samb

[Freeipa-users] Re: FreeIPA and AD trust

2018-02-06 Thread Grace Thompson via FreeIPA-users
I have an open RFE for global catalogs for a while now. Last update for target release is 7.5/7.6 timeframe :( -- gracie mobile > On Feb 6, 2018, at 7:25 AM, Alexander Bokovoy via FreeIPA-users > wrote: > > > > - Original Message - >> Hi, >> >> Clearly my Google skills are lack

[Freeipa-users] Re: FreeIPA and AD trust

2018-02-06 Thread Alexander Bokovoy via FreeIPA-users
- Original Message - > Hi, > > Clearly my Google skills are lacking, as I've not been able to find anything > definitive (mainly just old versions of IPA) > > We have a well used FreeIPA domain, but I have a few appliances and > applications that require Active Directory. I can find inf

[Freeipa-users] Re: FreeIPA and AD trust

2018-02-06 Thread Boris Sukhinin via FreeIPA-users
You could probably establish two-way trust between AD and IPA domains. Is seems such configuration is supported: https://access.redhat.com/documentation/en-us/red_hat_enterprise_linux/7/html-single/windows_integration_guide/index#trust-one-two-way - Boris Sukhinin ___

[Freeipa-users] Re: FreeIPA and AD Trust - macOS cannot see AD trust users

2017-07-10 Thread Alexander Bokovoy via FreeIPA-users
On su, 09 heinä 2017, Louis Abel via FreeIPA-users wrote: Hello! I created a FreeIPA (ipa.angelsofclockwork.net) and Active Directory (ad.angelsofclockwork.net) and put them into a two way trust with posix. I used these commands: ipa-adtrust-install --enable-compat --add-agents ipa trust-add --