[Freeipa-users] Re: Extending schema

2018-09-17 Thread Alexander Bokovoy via FreeIPA-users
On to, 13 syys 2018, Henrik Johansson via FreeIPA-users wrote: Hi, I am going to migrate an existing environment to FreeIPA 4.5. The current LDAP has a few site-specific attributes and I have been trying to figure out how I add these in an easy was that also keeps them when upgrading etc. I was

[Freeipa-users] Re: Need assistance setting up auth-ldap with Freeipa

2018-09-17 Thread Rob Crittenden via FreeIPA-users
Morgan Cox via FreeIPA-users wrote: > Hi. > > I have been trying to integrate openvpn with Freeipa, general > integration (i.e using IPA user password) works fine, my issue is > connecting it with 2FA (OTP), without writing an external script it is > not possible to use OTP + IPA + openvpn as ther

[Freeipa-users] Need assistance setting up auth-ldap with Freeipa

2018-09-17 Thread Morgan Cox via FreeIPA-users
Hi. I have been trying to integrate openvpn with Freeipa, general integration (i.e using IPA user password) works fine, my issue is connecting it with 2FA (OTP), without writing an external script it is not possible to use OTP + IPA + openvpn as there is no mechanism to ask for 2nd factor in openv

[Freeipa-users] Re: HBAC Rules for OpenVPN Server

2018-09-17 Thread Jochen Hein via FreeIPA-users
Rob Crittenden via FreeIPA-users writes: > Sina Owolabi via FreeIPA-users wrote: >> Hi List >> >> I’ve been struggling with this for a while and I would really appreciate >> some advice.  >> I have an openvpn server using freeIPA to authenticate users logging >> into the office VPN.  >> Currentl

[Freeipa-users] Re: Migrate IPA from Centos 6.9 to Centos 7.5 - CA install error

2018-09-17 Thread Collin Douglas via FreeIPA-users
Good gravy you're right! I found some other bugs that didn't quite apply but I never found this one. Your kung fu is mighty indeed. Thank you for the reply. ___ FreeIPA-users mailing list -- freeipa-users@lists.fedorahosted.org To unsubscribe send an

[Freeipa-users] Re: HBAC Rules for OpenVPN Server

2018-09-17 Thread Rob Crittenden via FreeIPA-users
Sina Owolabi via FreeIPA-users wrote: > Hi List > > I’ve been struggling with this for a while and I would really appreciate > some advice.  > I have an openvpn server using freeIPA to authenticate users logging > into the office VPN.  > Currently all users have access to all services on the OpenV

[Freeipa-users] HBAC Rules for OpenVPN Server

2018-09-17 Thread Sina Owolabi via FreeIPA-users
Hi List I’ve been struggling with this for a while and I would really appreciate some advice. I have an openvpn server using freeIPA to authenticate users logging into the office VPN. Currently all users have access to all services on the OpenVPN server. How do I use HBAC to properly restrict them