[Freeipa-devel] 43 Inherit nssldap security access settings during replica install

JR Aquino JR.Aquino at citrix.com
Wed Feb 29 07:02:45 UTC 2012


When making adjustments to increase the bind security settings of a FreeIPA server, it is best practice to inherit those settings when installing a new replica server.

Inherit the following bind security settings when performing a replica install:
'nsslapd-allow-unauthenticated-binds',
'nsslapd-require-secure-binds',
'nsslapd-allow-anonymous-access',
'nsslapd-minssf'

https://fedorahosted.org/freeipa/ticket/1930

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Jr Aquino | Sr. Information Security Specialist
GIAC Certified Incident Handler | GIAC WebApp Penetration Tester
Citrix Online | 7408 Hollister Avenue | Goleta, CA 93117
T:  +1 805.690.3478<tel:+1%C2%A0805.690.3478>
C: +1 805.717.0365<tel:+1%20805.717.0365>
jr.aquino at citrixonline.com<mailto:jr.aquino at citrixonline.com>
http://www.citrixonline.com<http://www.citrixonline.com/>

-------------- next part --------------
A non-text attachment was scrubbed...
Name: freeipa-jraquino-0043-Inherit-nssldap-security-access-settings-during-replia-install.patch
Type: application/octet-stream
Size: 3129 bytes
Desc: freeipa-jraquino-0043-Inherit-nssldap-security-access-settings-during-replia-install.patch
URL: <http://listman.redhat.com/archives/freeipa-devel/attachments/20120229/1403bf11/attachment.obj>


More information about the Freeipa-devel mailing list