Peter Tselios via FreeIPA-users wrote: > Hello, > I want to create an IPA "system" account that will be able to enroll clients > (nothing else). There a discussion (around 2016) but it looks that is not > relevant with the FreeIPA 4.5. Also, I cannot find anything in the Red Hat's > KB. > > So, what is the correct way to create a system account that will join hosts > in the IdM domain? >
Adding a role to a system account is not directly supported yet. You can fudge it by manually adding a memberOf to the entry pointing to the role you want it to be a member of using ldapmodify. There are generic sysaccount creation instructions on the freeIPA wiki. rob _______________________________________________ FreeIPA-users mailing list -- freeipa-users@lists.fedorahosted.org To unsubscribe send an email to freeipa-users-le...@lists.fedorahosted.org Fedora Code of Conduct: https://getfedora.org/code-of-conduct.html List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/freeipa-users@lists.fedorahosted.org/message/45NRNGPOKCTYQMFEFDPJXOLSFVGCOKGO/