From Glee
Jump to: navigation, search

Install :

yum install freeipa-server

The DNS part is optional and needs to be enabled at install time. Example :

yum -y install bind bind-dyndb-ldap
ipa-server-install -r HERE.EXAMPLE.COM -n \
    --ssh-trust-dns --subject="O=Example" \
    --setup-dns --forwarder=

Server Configuration

Useful initial changes :

  • IPA Server
    • Configuration
      • Default shell: /bin/sh -> /bin/bash

Client Configuration

  • Copy over /etc/krb5.conf from the server.
  • Test obtaining a TGT : kinit admin, klist
  • Firefox : about:config : network.negotiate-auth.trusted-uris : Add your domain name(s) comma separated.