[Freeipa-users] New FreeIPA Install; Testing for Proof of Concept

Rob Ogilvie rob at axpr.net
Wed Aug 8 19:16:55 UTC 2012


On Wed, Aug 8, 2012 at 11:52 AM, Simo Sorce <simo at redhat.com> wrote:
> On Wed, 2012-08-08 at 11:23 -0700, Rob Ogilvie wrote:
> > -I'm going to set up the IPA server with a new realm;
> > UNIX.MYCOMPANY.COM (do I need to have our DNS folks put an SRV record
> > up there for that?  If so, what?)
>
> If your DNS people want to manually mange DNS for you then they need to
> create the unix.mydomain.com zone and manually create SRV and TXT
> records for kerberos and ldap IPA servers.

Is there a doc that explains what those SRV and TXT records need to look like?

> > -I'm going to try registering testserver.mycompany.com server as part
> > of the UNIX.MYCOMPANY.COM realm.
> >
> > Sound reasonable and/or sane?  :-)
>
> for the ipa server it should be in the unix.mydomain.com DNS zone to be
> useful.

The IPA server needs to be part of the unix.mycompany.com domain,
then, and the IPA clients do not?

Rob




More information about the Freeipa-users mailing list