[Freeipa-devel] Ipa-server-install Firewall Support

Martin Kosek mkosek at redhat.com
Thu Apr 10 06:48:49 UTC 2014


On 04/10/2014 02:57 AM, Dmitri Pal wrote:
> On 04/08/2014 02:42 PM, Rob Crittenden wrote:
>> Justin Brown wrote:
...
> b) Example: freeipa-server-install --setup-dns --forwarder=192.168.0.2
> --forwarder=192.168.0.3

Let's talk about CLI. Shouldn't we add just one option - "--no-firewall"? I
would assume that we want to open the firewall ports by default *if* the
firewalld is running. If firewalld is not running, ipa-server-install would
detect it via DBUS and just simply print warning and would not configure
anything and could just maybe spit out iptables configuration as Justin
mentioned (optional).

Martin




More information about the Freeipa-devel mailing list