[Freeipa-users] How to check if ldap was updated?

2017-02-22 Thread Sandor Juhasz
Hi, i would like to know if there is any endpoint, command, plugin, api or other way to check if ldap was modified. I would like to trigger jobs, if user/group attributes are updated and polling ldap continuously is not he best way i guess. Sándor Juhász System Administrator ChemAxon Ltd

Re: [Freeipa-users] modify schema - add group email and display attribute

2017-01-19 Thread Sandor Juhasz
I think ipa permission-mod "System: Read Groups" --includedattrs=mail --includedattrs=displayname solved my issue. Sándor Juhász System Administrator ChemAxon Ltd . Building Hx, GraphiSoft Park, Záhony utca 7, Budapest, Hungary, H-1031 Cell: +36704258964 From: "Sando

Re: [Freeipa-users] modify schema - add group email and display attribute

2017-01-19 Thread Sandor Juhasz
, Hungary, H-1031 Cell: +36704258964 From: "Alexander Bokovoy" <aboko...@redhat.com> To: "Sandor Juhasz" <sjuh...@chemaxon.com> Cc: freeipa-users@redhat.com Sent: Thursday, January 19, 2017 3:22:34 PM Subject: Re: [Freeipa-users] modify schema - add gr

Re: [Freeipa-users] modify schema - add group email and display attribute

2017-01-19 Thread Sandor Juhasz
Ltd . Building Hx, GraphiSoft Park, Záhony utca 7, Budapest, Hungary, H-1031 Cell: +36704258964 From: "Sandor Juhasz" <sjuh...@chemaxon.com> To: "Petr Vobornik" <pvobo...@redhat.com> Cc: freeipa-users@redhat.com Sent: Wednesday, January 11, 2017 3:26:41 PM Sub

Re: [Freeipa-users] modify schema - add group email and display attribute

2017-01-11 Thread Sandor Juhasz
ion', groupmail_plugin.add_group_mail_pre_op); return groupmail_plugin; }); Sándor Juhász System Administrator ChemAxon Ltd . Building Hx, GraphiSoft Park, Záhony utca 7, Budapest, Hungary, H-1031 Cell: +36704258964 From: "Brian Candler" <b.cand...@pobox.com> To: "Sandor Juhasz" <sj

Re: [Freeipa-users] modify schema - add group email and display attribute

2017-01-02 Thread Sandor Juhasz
: "Sandor Juhasz" <sjuh...@chemaxon.com> To: "Ludwig Krispenz" <lkris...@redhat.com> Cc: freeipa-users@redhat.com Sent: Wednesday, December 21, 2016 4:39:32 PM Subject: Re: [Freeipa-users] modify schema - add group email and display attribute That would be

Re: [Freeipa-users] modify schema - add group email and display attribute

2016-12-21 Thread Sandor Juhasz
redhat.com Sent: Wednesday, December 21, 2016 3:34:03 PM Subject: Re: [Freeipa-users] modify schema - add group email and display attribute On 12/21/2016 02:07 PM, Sandor Juhasz wrote: Hi, i would like to modify schema to have group objects extended with email and display name attribute. The r

[Freeipa-users] modify schema - add group email and display attribute

2016-12-21 Thread Sandor Juhasz
Hi, i would like to modify schema to have group objects extended with email and display name attribute. The reason is that we are trying to sync our ldap to our google apps. I don't know how much this doc http://www.freeipa.org/images/5/5b/FreeIPA33-extending-freeipa.pdf can be applied to

[Freeipa-users] ipa schema-compat, DIT view and replication

2015-06-19 Thread Sandor Juhasz
Hello, we migrated to centos7.1 and ipa server 4.1.0. DIT view using schema compat plugin is working on one instance - celebrations. We are using a 4 way cluster of ipa servers. The schema-compat-container does not get replicated. Is there a way - apart making the change on the replica - to

Re: [Freeipa-users] LDAP authentication for JIRA using FreeIPA

2015-06-10 Thread Sandor Juhasz
. Sándor Juhász System Administrator ChemAxon Ltd . Building Hx, GraphiSoft Park, Záhony utca 7, Budapest, Hungary, H-1031 Cell: +36704258964 From: Christopher Lamb christopher.l...@ch.ibm.com To: Martin Kosek mko...@redhat.com, Brian Topping brian.topp...@gmail.com, Sandor Juhasz sjuh

Re: [Freeipa-users] LDAP authentication for JIRA using FreeIPA

2015-06-10 Thread Sandor Juhasz
Hi, here are our working configurations. Might be useful. We use compat tree for auth. We use user in group matching. We use group filter for login authorization. We use FedoraDS as ldap connector on JIRA's side. We don't use pw change or user create in IPA from JIRA side. Watch out not to

Re: [Freeipa-users] password expiration

2015-06-02 Thread Sandor Juhasz
It is confirmed, the password policy was changed with password expiration beyond 2038. Question is, how can we restore the pw policy without a working admin user? Sándor Juhász System Administrator ChemAxon Ltd . Building Hx, GraphiSoft Park, Záhony utca 7, Budapest, Hungary, H-1031 Cell:

Re: [Freeipa-users] Virtual DIT view howto

2014-09-26 Thread Sandor Juhasz
, Budapest, Hungary, H-1031 Cell: +36704258964 - Original Message - From: Alexander Bokovoy aboko...@redhat.com To: Sandor Juhasz sjuh...@chemaxon.com Cc: freeipa-users@redhat.com Sent: Thursday, September 25, 2014 3:24:50 PM Subject: Re: [Freeipa-users] Virtual DIT view howto

Re: [Freeipa-users] Virtual DIT view howto

2014-09-26 Thread Sandor Juhasz
To: Sandor Juhasz sjuh...@chemaxon.com, freeipa-users@redhat.com Sent: Friday, September 26, 2014 1:00:37 PM Subject: Re: [Freeipa-users] Virtual DIT view howto On 09/26/2014 11:19 AM, Sandor Juhasz wrote: Hello, i want to bind applications to the ldap, via ldap connector, so this should

[Freeipa-users] Virtual DIT view howto

2014-09-25 Thread Sandor Juhasz
Hello, i need a bit of help on how to create virtual dit structure on an existing ipa. I need it to create separate structure to authenticate users for services which don't support ldap search filters. I did not find anything in the manual or any howto to start with. Sándor Juhász System

Re: [Freeipa-users] authenticate samba 3 or 4 with freeipa

2014-03-28 Thread Sandor Juhasz
Sent: Thursday, March 27, 2014 5:51:23 PM Subject: Re: [Freeipa-users] authenticate samba 3 or 4 with freeipa On 27.3.2014 14:36, Sandor Juhasz wrote: Hello, what is the best practice to authenticate samba file sharing with freeipa as auth service. Either version 3 or 4 of samba is fine

[Freeipa-users] authenticate samba 3 or 4 with freeipa

2014-03-27 Thread Sandor Juhasz
Hello, what is the best practice to authenticate samba file sharing with freeipa as auth service. Either version 3 or 4 of samba is fine, as we are looking for this only for filesharing and not domain service. Our ipa service is hosted on CentOS 6.5. The samba service is preferred to be