Hi --
We have been using IdM/FreeIPA for a while, and as these things tend to happen, we have a process to create “service accounts” in the domain that is quite cumbersome and was what “just worked” at the time so it is what we have been doing. Currently using IdM/FreeIPA 4.9.13 on RHEL 8.10. (When I say “service accounts” I mean an account that an application would use to bind to the LDAP domain, read records, and do something like allow the user to use the application.) What is the ‘suggested’ or preferred method to create this kind of user in IdM? Is “system account” the better name? I found: * https://lists.fedorahosted.org/archives/list/freeipa-users@lists.fedorahosted.org/thread/44Z4ANXQYKRNTEVNL35BK27X7Q67RVDQ/ * https://www.freeipa.org/page/HowTo/LDAP * https://lists.fedorahosted.org/archives/list/freeipa-users@lists.fedorahosted.org/thread/2MBVML4L7OCM77VXXX5PQGFLAGGXGDSL/ * https://github.com/noahbliss/freeipa-sam Which all seem good, especially freeipa-sam. But they are also all pretty old. Thanks, Chad -- Chad Schrock, he/him Supporting MIT Lincoln Laboratory, Lexington, MA chad.schr...@ll.mit.edu
smime.p7s
Description: S/MIME cryptographic signature
-- _______________________________________________ FreeIPA-users mailing list -- freeipa-users@lists.fedorahosted.org To unsubscribe send an email to freeipa-users-le...@lists.fedorahosted.org Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedorahosted.org/archives/list/freeipa-users@lists.fedorahosted.org Do not reply to spam, report it: https://pagure.io/fedora-infrastructure/new_issue