Hi, so i managed to finally make freeipa work as I want with salt, so now, any EL 7 system installed and added to salt is automatically added to freeipa.
So that mean that we have a proper central authentication system, which can be used to distribute ssh keys as well, and can manage certificates. Which bring me to the 2nd part, ie secure syslog centralisation for the servers that we converted ( as I need to have a CA/ssl certification system for syslog over the internet ). next stuff to do: - make sure we have a replica of the freeipa setup - add more server in the pool ( for now, only a few EL7 are there ) - convert the jenkins host to EL7 and start to use LDAP based access This also bring the question of "how do we give access", ie what kind of organisation do we want. -- Michael Scherer Sysadmin, Community Infrastructure and Platform, OSAS
signature.asc
Description: This is a digitally signed message part
_______________________________________________ Gluster-infra mailing list [email protected] http://www.gluster.org/mailman/listinfo/gluster-infra
