Re: [Freeipa-users] RHEL 6.3 identity manual - IPA

2013-02-04 Thread Fred van Zwieten
Hi, ipa-client-install should take care of setting up sudo on the client to use IPA, afaik. Essential line in nsswitch.conf: sudoers:files ldap Please read

Re: [Freeipa-users] RHEL 6.3 identity manual - IPA

2013-02-04 Thread Rajnesh Kumar Siwal
IPA client on CentOS 5.6 was not able to take care of it.) On Mon, Feb 4, 2013 at 1:54 PM, Fred van Zwieten fvzwie...@vxcompany.com wrote: Hi, ipa-client-install should take care of setting up sudo on the client to use IPA, afaik. Essential line in nsswitch.conf: sudoers:files ldap

Re: [Freeipa-users] RHEL 6.3 identity manual - IPA

2013-02-04 Thread Natxo Asenjo
On Mon, Feb 4, 2013 at 9:33 AM, Rajnesh Kumar Siwal rajnesh.si...@gmail.com wrote: IPA client on CentOS 5.6 was not able to take care of it.) that's why you should be using a config management tool like cfengine, puppet, chef, ansible, ., (choose your poison). Organizations usually have

Re: [Freeipa-users] RHEL 6.3 identity manual - IPA

2013-02-04 Thread Rob Crittenden
Fred van Zwieten wrote: Hi, ipa-client-install should take care of setting up sudo on the client to use IPA, afaik. Not yet, https://fedorahosted.org/freeipa/ticket/3358 Essential line in nsswitch.conf: sudoers:files ldap Please read here

Re: [Freeipa-users] RHEL 6.3 identity manual - IPA

2013-02-04 Thread Rajnesh Kumar Siwal
Hi Rob, This is the way I configured it:- 1. Added the details in /etc/ldap.conf :- binddn uid=sudo,cn=sysaccounts,cn=etc,dc=chargepoint,dc=dmz bindpw ssl start_tls tls_cacertfile /etc/ipa/ca.crt tls_checkpeer yes bind_timelimit 5 timelimit 15 uri ldap://ipa1.chargepoint.dmz

Re: [Freeipa-users] RHEL 6.3 identity manual - IPA

2013-02-04 Thread Rob Crittenden
Rajnesh Kumar Siwal wrote: Hi Rob, This is the way I configured it:- 1. Added the details in /etc/ldap.conf :- binddn uid=sudo,cn=sysaccounts,cn=etc,dc=chargepoint,dc=dmz bindpw ssl start_tls tls_cacertfile /etc/ipa/ca.crt tls_checkpeer yes bind_timelimit 5 timelimit 15 uri

Re: [Freeipa-users] RHEL 6.3 identity manual - IPA

2013-02-03 Thread Rajnesh Kumar Siwal
I am planning to use the sudo feature on IPA 2.2. By default the IPA client that I configured does not seems to use fetch the sudo user details. It looks that we need to modify nsswitch.conf and ldap.conf to support it. Can sssd take care of fetching the sudo user details ? Secondly, I am not

Re: [Freeipa-users] RHEL 6.3 identity manual - IPA

2012-08-24 Thread Rob Crittenden
...@redhat.com [freeipa-users-boun...@redhat.com] on behalf of Steven Jones [steven.jo...@vuw.ac.nz] Sent: Friday, 24 August 2012 11:16 a.m. Cc: Freeipa-users@redhat.com Subject: Re: [Freeipa-users] RHEL 6.3 identity manual - IPA Hi, Just found this doc, Red Hat Enterprise Linux 5.8 Configuring

[Freeipa-users] RHEL 6.3 identity manual - IPA

2012-08-23 Thread Steven Jones
Some notes on the identity manual which says its for RHEl6, 13.4.2. Client Configuration for sudo Rules This example specifically configures a Red Hat Enterprise Linux 6 client for sudo rules. 8 2. Enable debug logging for sudo operations in the /etc/ldap.conf file. If this file does not

Re: [Freeipa-users] RHEL 6.3 identity manual - IPA

2012-08-23 Thread Stephen Ingram
On Thu, Aug 23, 2012 at 2:26 PM, Steven Jones steven.jo...@vuw.ac.nz wrote: Some notes on the identity manual which says its for RHEl6, 13.4.2. Client Configuration for sudo Rules This example specifically configures a Red Hat Enterprise Linux 6 client for sudo rules. 8 2. Enable debug

Re: [Freeipa-users] RHEL 6.3 identity manual - IPA

2012-08-23 Thread Steven Jones
...@gmail.com] Sent: Friday, 24 August 2012 11:00 a.m. To: Steven Jones Cc: Freeipa-users@redhat.com Subject: Re: [Freeipa-users] RHEL 6.3 identity manual - IPA On Thu, Aug 23, 2012 at 2:26 PM, Steven Jones steven.jo...@vuw.ac.nz wrote: Some notes on the identity manual which says its for RHEl6

Re: [Freeipa-users] RHEL 6.3 identity manual - IPA

2012-08-23 Thread Steven Jones
[freeipa-users-boun...@redhat.com] on behalf of Steven Jones [steven.jo...@vuw.ac.nz] Sent: Friday, 24 August 2012 11:16 a.m. Cc: Freeipa-users@redhat.com Subject: Re: [Freeipa-users] RHEL 6.3 identity manual - IPA Hi, Just found this doc, Red Hat Enterprise Linux 5.8 Configuring Identity