I have an instance of FreeIPA with AD trust established. I know that it is 
possible to enable access for the web ui for AD users by creating id override 
as it is explained here: https://www.freeipa.org/page/V4/AD_Users_Login. My 
question is: would it be possible to enable the same by creating an id override 
for an AD group instead of doing it on per user basis? This approach would be 
much simpler than iterating members of a group. However, when I tried to test 
this approach it didn't work for me - ad user could not log in.
_______________________________________________
FreeIPA-users mailing list -- freeipa-users@lists.fedorahosted.org
To unsubscribe send an email to freeipa-users-le...@lists.fedorahosted.org

Reply via email to