Hi --

 

We have been using IdM/FreeIPA for a while, and as these things tend to happen, 
we have a process to create “service accounts” in the domain that is quite 
cumbersome and was what “just worked” at the time so it is what we have been 
doing. Currently using IdM/FreeIPA 4.9.13 on RHEL 8.10.

 

(When I say “service accounts” I mean an account that an application would use 
to bind to the LDAP domain, read records, and do something like allow the user 
to use the application.)

 

What is the ‘suggested’ or preferred method to create this kind of user in IdM? 
Is “system account” the better name?

 

 

I found:

*       
https://lists.fedorahosted.org/archives/list/freeipa-users@lists.fedorahosted.org/thread/44Z4ANXQYKRNTEVNL35BK27X7Q67RVDQ/
*       https://www.freeipa.org/page/HowTo/LDAP
*       
https://lists.fedorahosted.org/archives/list/freeipa-users@lists.fedorahosted.org/thread/2MBVML4L7OCM77VXXX5PQGFLAGGXGDSL/
*       https://github.com/noahbliss/freeipa-sam

 

Which all seem good, especially freeipa-sam. But they are also all pretty old.

 

 

Thanks,

Chad

 

 

--

Chad Schrock, he/him

Supporting MIT Lincoln Laboratory, Lexington, MA

chad.schr...@ll.mit.edu

 

 

Attachment: smime.p7s
Description: S/MIME cryptographic signature

-- 
_______________________________________________
FreeIPA-users mailing list -- freeipa-users@lists.fedorahosted.org
To unsubscribe send an email to freeipa-users-le...@lists.fedorahosted.org
Fedora Code of Conduct: 
https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: 
https://lists.fedorahosted.org/archives/list/freeipa-users@lists.fedorahosted.org
Do not reply to spam, report it: 
https://pagure.io/fedora-infrastructure/new_issue

Reply via email to