[Freeipa-users] Recomendations on multi-domain environments

Arturo Borrero aborrero at cica.es
Mon Sep 23 11:53:15 UTC 2013


On 23/09/13 09:04, Petr Spacek wrote:
> I would add one other point:
> Try to be 'future-proof'. Are you 100% sure that you will never merge
> both sets of users? 'Never' is a long time ... (Remember that you will
> have to solve UID/GID/naming conflicts during the merge. It will be
> painful.)
>
> What is the added value of two domains?

One of the added values of two domains (two servers) is the situation 
when owners of "second-domain.com" want to take its users db away. In 
that case, they just take the "second-domain.com" server.

Anyway, both situations (merge of users, and users take-away) are 
unlikely to happen.


-- 
Arturo Borrero González
Departamento de Seguridad Informática (nis at cica.es)
Centro Informático Científico de Andalucía (CICA)
Avda. Reina Mercedes s/n - 41012 - Sevilla (Spain)
Tfno.: +34 955 056 600 / FAX: +34 955 056 650
Consejería de Economía, Innovación, Ciencia y Empleo
Junta de Andalucía

-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/pkcs7-signature
Size: 3072 bytes
Desc: S/MIME Cryptographic Signature
URL: <http://listman.redhat.com/archives/freeipa-users/attachments/20130923/ba46ca72/attachment.p7s>


More information about the Freeipa-users mailing list