[Freeipa-users] Recomendations on multi-domain environments

2013-09-18 Thread Arturo Borrero
Hi there! This is my situation. I have some users of my main domain "cica.es". But I also maintain a database of users of others domain, ie "example.es". I can apply most of FreeIPA configuration to "cica.es" users: access to hosts, groups, policies, roles, etc.. But users of "example.es" a

Re: [Freeipa-users] Recomendations on multi-domain environments

2013-09-18 Thread Andrew Lau
On Wed, Sep 18, 2013 at 9:40 PM, Arturo Borrero wrote: > Hi there! > > This is my situation. > > I have some users of my main domain "cica.es". > > But I also maintain a database of users of others domain, ie "example.es". > > I can apply most of FreeIPA configuration to "cica.es" users: access t

[Freeipa-users] ipa and puppet

2013-09-18 Thread Jakub Bittner
Hi, we are testing freeipa and we are wonder if anyone knows how to edit ldap tree (or what to do) to be able to store puppet nodes in ipa's ldap. I found this RFE on redhat bugzilla, but I do not understand it so much. https://bugzilla.redhat.com/show_bug.cgi?id=805368 Thank you for any hi

[Freeipa-users] ipa-client auth with windomain account

2013-09-18 Thread Михаил А
Hi, Do I need network access to ports from the ipa-client to the server- windows for authentication with windomain accounts? ipa-server fedora19 ipa-client fedora19 winserver win2012 the ipa-client is located in another network within the network ipa-server, ipa-client and windows-server au

Re: [Freeipa-users] ipa and puppet

2013-09-18 Thread Rob Crittenden
Jakub Bittner wrote: Hi, we are testing freeipa and we are wonder if anyone knows how to edit ldap tree (or what to do) to be able to store puppet nodes in ipa's ldap. I found this RFE on redhat bugzilla, but I do not understand it so much. https://bugzilla.redhat.com/show_bug.cgi?id=805368 Th

Re: [Freeipa-users] Elliptic curves with the CA

2013-09-18 Thread mees virk
I do not have a valid support contract, or other contracts with RedHat. Doesn't that stop me from opening proper RFE ticket? In any case, my interest was this time solely for evaluation purposes. If I were actively choosing an integrated identity management product, I might not choose Freeipa b

[Freeipa-users] slapi-nis bypass Password Policies

2013-09-18 Thread cbul...@gmail.com
Hi, We have a client server connected to the IPA server using NIS. It's working well but we have a service running at client server that doesn't handle the password expiration properly. Is it possible to bypass the Password Policies from this client server? Thanks! _

Re: [Freeipa-users] Elliptic curves with the CA

2013-09-18 Thread Rich Megginson
On 09/18/2013 11:53 AM, mees virk wrote: I do not have a valid support contract, or other contracts with RedHat. Doesn't that stop me from opening proper RFE ticket? Not at all - https://fedorahosted.org/freeipa/newticket - depending on what you mean by "proper". In any case, my interest w

Re: [Freeipa-users] Elliptic curves with the CA

2013-09-18 Thread John Dennis
On 09/18/2013 01:53 PM, mees virk wrote: > I do not have a valid support contract, or other contracts with RedHat. > Doesn't that stop me from opening proper RFE ticket? > > In any case, my interest was this time solely for evaluation purposes. > If I were actively choosing an integrated identity