[Freeipa-users] Re: IPA Client / access from another domain and realm possible ?

2022-11-09 Thread Karim Bourenane via FreeIPA-users
Rob, All I have put into sssd.conf another domain in ldap acces_/auth_/id_ / ldap_uri/ldap_access_filter .. in my IPA client host When I come,first, to this IPA client host in root user and start command : su - user-from-other-domainBBB, or su - user-in-other-domainBBB@OTHER-REALM-BBB, *its runnin

[Freeipa-users] Re: IPA Client / access from another domain and realm possible ?

2022-11-09 Thread Karim Bourenane via FreeIPA-users
Hello Rob, all Thank you for your reply. I have several and separate domain/realm server and client. My goal is to manage ( by devops teams only) all server's OS (IPA server + IPA Client), inside or outside my AAA.com domain. For the inside domain, no pb. But outside domains, I need to know how I

[Freeipa-users] Re: IPA Client / access from another domain and realm possible ?

2022-11-08 Thread Rob Crittenden via FreeIPA-users
Karim Bourenane via FreeIPA-users wrote: > Hello Team > > Im on CentOS 7.9, with IPA server under 4.6.8. > My IPA server manages a domain/realm AAA.com.I would like it to be > accessible also via ssh from another domain/realm BBB.com and also to > use Kerberos token from BBB.comto use sudo managem