Philippe de Rochambeau via FreeIPA-users wrote:
> Hello,
> 
> what is the easiest way to modify an existing FreeIPA/iDM User Schema?
> 
> I tried the following, in a dev environment :
> ipa config-mod --addattr=ipaGroupObjectClasses=newClass 
> 
> ...as recommended here  
> https://www.freeipa.org/images/5/5b/FreeIPA33-extending-freeipa.pdf
> 
> …but got a privilege message. I probably don’t belong to the right group.
> 
> But assuming I do, can you modify the User Schema, on the fly, as above?

What is your ultimate goal here?

Yes, you can use this to modify new user's objectclasses (it isn't
retroactive). You need admin privileges to manage configuration.

rob
_______________________________________________
FreeIPA-users mailing list -- [email protected]
To unsubscribe send an email to [email protected]
Fedora Code of Conduct: 
https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: 
https://lists.fedorahosted.org/archives/list/[email protected]
Do not reply to spam, report it: 
https://pagure.io/fedora-infrastructure/new_issue

Reply via email to