[Freeipa-users] HBAC for mod_auth_kerb (and give karma to Fedora 20 package)

2014-03-25 Thread Jan Pazdziora
as the guidelines but you can also try to set things up completely without the guides, just using mod_authnz_pam's documentation at http://www.adelton.com/apache/mod_authnz_pam/ And comments and help with the karma would be appreciated. -- Jan Pazdziora Principal Software Engineer, Identity

Re: [Freeipa-users] Free-IPA in an AWS Base Image

2014-02-20 Thread Jan Pazdziora
to change the hostname of the instance to be in the domain managed by the FreeIPA server? -- Jan Pazdziora Principal Software Engineer, Identity Management Engineering, Red Hat ___ Freeipa-users mailing list Freeipa-users@redhat.com https://www.redhat.com

Re: [Freeipa-users] Allow freeipa send password to user

2014-02-20 Thread Jan Pazdziora
for no password change forced on user upon their first login from multiple sides, I wonder if the current behaviour stems from some technical reason or if it's just a security approach which the FreeIPA admins should be able to override. -- Jan Pazdziora Principal Software Engineer, Identity

Re: [Freeipa-users] HBAC - expected behaviour?

2014-02-19 Thread Jan Pazdziora
of its Any Host (aka Host category: all) manually and then removed it? -- Jan Pazdziora | adelton at #ipa*, #brno Principal Software Engineer, Identity Management Engineering, Red Hat ___ Freeipa-users mailing list Freeipa-users@redhat.com https

[Freeipa-users] Enrolling client to second IPA server

2014-01-06 Thread Jan Pazdziora
not move me forward enrolling the system to another IPA server. Does anyone have example steps that need to be done to have my system enrolled to two IPA servers? Thank you, -- Jan Pazdziora Principal Software Engineer, Identity Management Engineering, Red Hat

Re: [Freeipa-users] freeipa client wont install on host where a ipa server guest is already installed.

2013-12-17 Thread Jan Pazdziora
that I must first uninstall the ipa server. What is the OS version and the exact message that you get? Has anyone experienced this and how might I get around this problem? Are you sure you don't have the IPA server installed on both the KVM guest *and* on the host? -- Jan Pazdziora Principal

[Freeipa-users] Starting with host based access control and your existing users and hosts

2013-11-11 Thread Jan Pazdziora
to be disabled or it would still allow all accesses. That might break existing users. Check http://www.freeipa.org/page/Howto/HBAC_and_allow_all about possible solution to that problem. -- Jan Pazdziora Principal Software Engineer, Identity Management Engineering, Red Hat

Re: [Freeipa-users] Incorrect user information

2013-09-23 Thread Jan Pazdziora
be updated automatically to reflect those changes. Bug perhaps? The ticket https://fedorahosted.org/freeipa/ticket/3569 tracks addition of the WebUI GECOS field. It's been added in upstream FreeIPA and it should find its way to the next RHEL releases as well. -- Jan Pazdziora | adelton

Re: [Freeipa-users] [freeipa-users] errors when trying to add public SSH key to user

2013-07-15 Thread Jan Pazdziora
server. Any thoughts? Does it fail even if you do not copy-n-paste the key but let shell expand it as ipa user-mod demo --sshpubkey $( cat /tmp/demo.pub ) ? -- Jan Pazdziora | adelton at #ipa*, #brno Principal Software Engineer, Identity Management Engineering, Red Hat

<    1   2