[Freeipa-users] User expiration on a certain date

Simo Sorce simo at redhat.com
Mon Dec 17 18:32:48 UTC 2012


On Mon, 2012-12-17 at 19:08 +0100, Sigbjorn Lie wrote:
> 
> 
> On Mon, December 17, 2012 18:40, Simo Sorce wrote:
> > On Mon, 2012-12-17 at 16:04 +0100, Sigbjorn Lie wrote:
> >
> >> Hi,
> >>
> >>
> >> Is it possible to lock out an user account on a set date?
> >>
> >
> > You should be able to set the krbPrincipalExpiration attribute to expire
> > an account on a set date.
> >
> > However note this: https://fedorahosted.org/freeipa/ticket/3305
> >
> >
> > It means ti will work with krb auth but not with ldap binds for now.
> >
> >
> 
> Thanks! That worked like a charm!!
> 
> Is there any active ticket to have this property exposed for editing in the IPA CLI / WEBUI?

No, an RFE ticket would be welcome though.

Simo.

-- 
Simo Sorce * Red Hat, Inc * New York




More information about the Freeipa-users mailing list