I have an instance of FreeIPA with AD trust established. I know that it is
possible to enable access for the web ui for AD users by creating id override
as it is explained here: https://www.freeipa.org/page/V4/AD_Users_Login. My
question is: would it be possible to enable the same by creating an id override
for an AD group instead of doing it on per user basis? This approach would be
much simpler than iterating members of a group. However, when I tried to test
this approach it didn't work for me - ad user could not log in.
_______________________________________________
FreeIPA-users mailing list -- freeipa-users@lists.fedorahosted.org
To unsubscribe send an email to freeipa-users-le...@lists.fedorahosted.org