[Freeipa-users] Limiting group/user visibility

Simo Sorce simo at redhat.com
Fri Dec 2 15:41:46 UTC 2011


On Fri, 2011-12-02 at 08:01 -0600, david t. klein wrote:
> I think, rather than replicating your admin accounts, have a separate admin
> realm, and then have all customer realms trust your admin realm, and use
> those credentials. 

In future this will be an easier way.
But right now trust relationships won't allow you to use a single admin
account to actually manage multiple freeipa realms.

Simo.

-- 
Simo Sorce * Red Hat, Inc * New York




More information about the Freeipa-users mailing list