[Freeipa-users] Re: Allow users from AD trust to run ipa commands

2024-01-19 Thread Yuriy Halytskyy via FreeIPA-users
Ahh, that explains it, thank you! Looks like I accidentally added "member User ID override" to a group as opposed to adding an external member. Cheers, Yuriy On Fri, Jan 19, 2024 at 8:12 PM Alexander Bokovoy wrote: > > On Пят, 19 сту 2024, Yuriy Halytskyy via FreeIPA-users wrote: > >Hi, > > >

[Freeipa-users] Re: Allow users from AD trust to run ipa commands

2024-01-18 Thread Alexander Bokovoy via FreeIPA-users
On Пят, 19 сту 2024, Yuriy Halytskyy via FreeIPA-users wrote: Hi, At first I've just created an external group, added the user, and added that group to a role but that didn't work. Then I stumbled across this while googling: ipa idoverrideuser-add 'Default Trust View' username@DOMAIN And it