On (30/12/16 15:02), Oucema Bellagha wrote: >Hi folks, > >After establishing the trust between AD and IPA, users from AD can >authenticate to Linux servers using password, but I want to add a another >authentication method using ssh-key. > >I can add SSH-key to AD users by adding a new schema attribute but then the >ssh-key can't be managed by IPA. > >Is there another way to manage ssh-key for AD users from IPA ? or another >method simply allowing ssh-key authentication of AD users to Linux servers ? > If you have freeIPA >= 4.1.3 then you can try ipa overrides https://fedorahosted.org/freeipa/ticket/4868
LS -- Manage your subscription for the Freeipa-devel mailing list: https://www.redhat.com/mailman/listinfo/freeipa-devel Contribute to FreeIPA: http://www.freeipa.org/page/Contribute/Code
