Hi everyone.

I'm currently planning on deploying FreeIPA as the Master KDC (among other
things to leverage from the API and some other built-in features - like
However I find (correct if I'm wrong) FreeIPA not very modular - therefore
I would like to know what's the strategy when deploying slave KDCs.

I've seen this thread
but I
don't really want to have a replica - the idea was to deploy a separate box
only running KDC - since the authentication is delegated to RADIUS for
Authentication, I don't need to expose LDAP Master to KDC slaves - If yes,
I would provide a read-only LDAP replica..

For starters, where is the FreeIPA KDC stash file stored?



Diogenes S. de Jesus
Manage your subscription for the Freeipa-users mailing list:
Go to http://freeipa.org for more info on the project

Reply via email to