[Freeipa-users] freeipa and AD

Dmitri Pal dpal at redhat.com
Thu May 19 22:27:25 UTC 2011


On 05/19/2011 06:06 PM, Steven Jones wrote:
> is this how ipa works?
>
> End State 5. A cross-realm trust is established between UNIX-based Kerberos and Active Directory–based Kerberos in UNIX and Windows infrastructures that remain separate. Windows and UNIX clients each authenticate to their own Kerberos Key Distribution Center (KDC) and (if the trust is two-way) can then access resources hosted by computers on the other side.

This is what we are building now.

>  
>
> My understanding is its simpler.....just a password sync?  which I guess is achieved by that password sync.

User synch from AD and password synch from in both directions is what it
is capable of now.

> regards
>
> Steven
>
> _______________________________________________
> Freeipa-users mailing list
> Freeipa-users at redhat.com
> https://www.redhat.com/mailman/listinfo/freeipa-users


-- 
Thank you,
Dmitri Pal

Sr. Engineering Manager IPA project,
Red Hat Inc.


-------------------------------
Looking to carve out IT costs?
www.redhat.com/carveoutcosts/






More information about the Freeipa-users mailing list