[Freeipa-users] Re: Ad integration

2019-07-22 Thread Andrew Meyer via FreeIPA-users
Excellent thank you! On Monday, July 22, 2019, 12:01:53 PM CDT, François Cami wrote: On Mon, Jul 22, 2019 at 6:51 PM Andrew Meyer via FreeIPA-users wrote: > > [andrew.meyer@freeipa01 ~]$ id james.kirk > id: james.kirk: no such user > [andrew.meyer@freeipa01 ~]$ id william.riker > id:

[Freeipa-users] Re: Ad integration

2019-07-22 Thread François Cami via FreeIPA-users
On Mon, Jul 22, 2019 at 6:51 PM Andrew Meyer via FreeIPA-users wrote: > > [andrew.meyer@freeipa01 ~]$ id james.kirk > id: james.kirk: no such user > [andrew.meyer@freeipa01 ~]$ id william.riker > id: william.riker: no such user > [andrew.meyer@freeipa01 ~]$ Try "id user@DOMAIN" like this: id

[Freeipa-users] Re: Ad integration

2019-07-22 Thread Andrew Meyer via FreeIPA-users
[andrew.meyer@freeipa01 ~]$ id james.kirkid: james.kirk: no such user[andrew.meyer@freeipa01 ~]$ id william.rikerid: william.riker: no such user[andrew.meyer@freeipa01 ~]$  Unless I neec to use ipa users-find command. On Monday, July 22, 2019, 11:47:12 AM CDT, Alexander Bokovoy wrote:

[Freeipa-users] Re: Ad integration

2019-07-22 Thread Alexander Bokovoy via FreeIPA-users
On ma, 22 heinä 2019, Andrew Meyer via FreeIPA-users wrote: Once this is done I should be able to do id user.name and get the Active Directory user correct? Resolving users is unrelated to mapping groups. You should be able to resolve users already. -- / Alexander Bokovoy Sr. Principal

[Freeipa-users] Re: Ad integration

2019-07-22 Thread Andrew Meyer via FreeIPA-users
Once this is done I should be able to do id user.name and get the Active Directory user correct? On Monday, July 22, 2019, 11:03:10 AM CDT, Alexander Bokovoy wrote: On ma, 22 heinä 2019, Andrew Meyer wrote: >0;47m  Getting this:                                                         

[Freeipa-users] Re: Ad integration

2019-07-22 Thread Alexander Bokovoy via FreeIPA-users
On ma, 22 heinä 2019, Andrew Meyer wrote: 0;47m Getting this: [andrew.meyer@freeipa01 ~]$ sudo ipa trust-find  --- 1 trust

[Freeipa-users] Re: Ad integration

2019-07-22 Thread John Keates via FreeIPA-users
So the name is MEYERAD but you typed MEYER-AD. Remove the dash from your earlier command and it should work. John > On 22 Jul 2019, at 17:48, Andrew Meyer via FreeIPA-users > wrote: > > Getting this: > > [andrew.meyer@freeipa01 ~]$ sudo ipa trust-find > --- > 1 trust matched >

[Freeipa-users] Re: Ad integration

2019-07-22 Thread Andrew Meyer via FreeIPA-users
Getting this: [andrew.meyer@freeipa01 ~]$ sudo ipa trust-find ---1 trust matched---  Realm name: ad.meyer.local  Domain NetBIOS name: MEYERAD  Domain Security Identifier: S-1-5-21-1219070868-1303614073-2179474410  Trust type: Active Directory

[Freeipa-users] Re: Ad integration

2019-07-22 Thread John Keates via FreeIPA-users
What does the AD Trust list in IPA show for the AD domain you should be using? The same one? Or a different notation? John > On 22 Jul 2019, at 17:13, Andrew Meyer via FreeIPA-users > wrote: > > Hello, > I am working on setting up FreeIPA with AD integration and seem to be running > into an

[Freeipa-users] Re: Ad integration

2019-07-22 Thread Alexander Bokovoy via FreeIPA-users
On ma, 22 heinä 2019, Andrew Meyer via FreeIPA-users wrote: Hello, I am working on setting up FreeIPA with AD integration and seem to be running into an issue.  Its possible that I am also doing something wrong. I

[Freeipa-users] Re: AD Integration

2018-07-17 Thread Alexander Bokovoy via FreeIPA-users
On ti, 17 heinä 2018, paul mitchell via FreeIPA-users wrote: We currently have a single AD (2016) domain, company.co.uk. The DNS zone file is managed by Active Directory, so all machines (Windows and Linux) are listed in the zone file. Windows users authenticate against AD and Linux users