[Freeipa-users] sudo made a bit easier to configure

Jakub Hrozek jhrozek at redhat.com
Fri Dec 21 18:10:12 UTC 2012


On Fri, Dec 21, 2012 at 06:42:40PM +0100, Natxo Asenjo wrote:
> On Thu, Dec 20, 2012 at 4:43 PM, Han Boetes <hboetes at gmail.com> wrote:
> > Hi,
> >
> > I discovered that using this recipe makes setting up sudo-ldap very simple.
> > Even when anonymous binds is disabled.
> 
> Thanks! I have not yet used sudo with IPA, but it sure is in the
> pipeline and this comes in handy ;-)
> 
> > URI ldap://auth-ipa.domain.com
> 
> can this be a srv record? Cannot test it right now but this would of
> course be the most ideal situation.

I haven't tried this myself, but maybe something like:

    URI ldap://dc=example,dc=com

might work.

If not, I'm pretty sure SRV records would just work if you leverage the
integration with the SSSD :-)




More information about the Freeipa-users mailing list