We have all of our users in a trusted Active Directory domain and it would be nice to allow them to administer our DNS using their AD accounts.
I tried creating a group called DNS administrators and assigning it the DNS administrator privilege and then adding my ad_domain_admin group (containing the nested external group containing my ad groups), but when I try to login to the webui it denies me access. I see a ticket here regarding allowing this : https://fedorahosted.org/freeipa/ticket/3242 It doesn't look like anything has happened on that ticket in the last 15 months though. Any idea if / when this will be implemented? -- Manage your subscription for the Freeipa-users mailing list: https://www.redhat.com/mailman/listinfo/freeipa-users Go to http://freeipa.org for more info on the project