[Freeipa-users] Re: DNS and FreeIPA

2021-12-26 Thread Dave Mintz via FreeIPA-users
Hi Peter, Thank you so much! Could you please elaborate on how to configure the FreeIPA DNS server to forward only non-local-domain queries? In the DNS Global Configuration there is the Forward policy Forward first Forward only Forwarding disabled Which one should be used to do what you say

[Freeipa-users] Re: DNS and FreeIPA

2021-12-26 Thread Peter Larsen via FreeIPA-users
On Sun, 2021-12-26 at 14:16 -0500, Dave Mintz via FreeIPA-users wrote: > Hello, > I have been trying to set up FreeIPA on an internal CentOS 8 server.  > I was successful in getting it running, I set up DNS for internal > queries.  It worked.  However, when I tried to set up SSL certs I ran > into

[Freeipa-users] Re: DNS and FreeIPA

2021-12-26 Thread Angus Clarke via FreeIPA-users
Hi You could host split view dns so as to only give responses to queries from certain (your) IP addresses, thus hiding your private DNS information from general public queries. Similarly yet more succinctly, you could use a subdomain and delegate the DNS for that to a private IP in your networ

[Freeipa-users] DNS and FreeIPA

2021-12-26 Thread Dave Mintz via FreeIPA-users
Hello, I have been trying to set up FreeIPA on an internal CentOS 8 server. I was successful in getting it running, I set up DNS for internal queries. It worked. However, when I tried to set up SSL certs I ran into issue. My question is this: I own a legitimate domain. It is not “hosted”. I