[Freeipa-devel] [PATCH] 402 Add userClass attribute for hosts

Rob Crittenden rcritten at redhat.com
Fri Apr 26 15:09:11 UTC 2013


Petr Viktorin wrote:
> On 04/25/2013 03:54 PM, Martin Kosek wrote:
>> On 04/25/2013 12:37 PM, Petr Viktorin wrote:
>>> On 04/23/2013 10:10 AM, Martin Kosek wrote:
>>>> This new freeform host attribute will allow provisioning systems
>>>> to add custom tags for host objects which can be later used for
>>>> in automember rules or for additional local interpretation.
>>>>
>>>> Design page:
>>>> http://www.freeipa.org/page/V3/Integration_with_a_provisioning_systems
>>>> Ticket: https://fedorahosted.org/freeipa/ticket/3583
>>>>
>>>> -----
>>>>
>>>> This is how it can be used:
>>>>
>>>> # ipa hostgroup-add webservers
>>>> Description: web servers
>>>> ----------------------------
>>>> Added hostgroup "webservers"
>>>> ----------------------------
>>>>    Host-group: webservers
>>>>    Description: web servers
>>>>
>>>> # ipa automember-add --type=hostgroup webservers
>>>> ----------------------------------
>>>> Added automember rule "webservers"
>>>> ----------------------------------
>>>>    Automember Rule: webservers
>>>>
>>>> # ipa automember-add-condition --key=userclass --type=hostgroup
>>>> --inclusive-regex=^webserver webservers
>>>> ----------------------------------
>>>> Added condition(s) to "webservers"
>>>> ----------------------------------
>>>>    Automember Rule: webservers
>>>>    Inclusive Regex: userclass=^webserver
>>>> ----------------------------
>>>> Number of conditions added 1
>>>> ----------------------------
>>>>
>>>>
>>>>
>>>> # ipa host-add web.example.com --force --class=webserver
>>>> --class=mailserver
>>>> ----------------------------
>>>> Added host "web.example.com"
>>>> ----------------------------
>>>>    Host name: web.example.com
>>>>    Principal name: host/web.example.com at EXAMPLE.COM
>>>>    Class: webserver, mailserver                    <<<<<<<<<<
>>>>    Password: False
>>>>    Member of host-groups: webservers               <<<<<<<<<<
>>>>    Indirect Member of netgroup: webservers
>>>>    Keytab: False
>>>>    Managed by: web.example.com
>>>>
>>>>
>>>> Martin
>>>>
>>>
>>> I was surprised to find that host-show doesn't show it by default. Is
>>> there a
>>> reason to not put userclass in default_attributes?
>>>
>>> Please add a test.
>>>
>>
>> Fixed. Updated patch attached.
>>
>> Martin
>
> ACK
>

Pushed to master, rebased and pushed to ipa-3-1

rob




More information about the Freeipa-devel mailing list