[Freeipa-users] setup key-based ssh using freeipa

Dmitri Pal dpal at redhat.com
Thu Apr 17 21:48:35 UTC 2014


On 04/17/2014 02:42 PM, quest monger wrote:
> I have setup freeipa server, and added a centos client that my ipa 
> users can now ssh too by using the freeipa account credentials.
> Now, i would like my users to be able to ssh to this centos client 
> using keys.
> I read this - 
> http://docs.fedoraproject.org/en-US/Fedora/18/html/FreeIPA_Guide/user-keys.html
> I generated the key-pair, and added the public key to user account in 
> freeipa web console.
>
>  Towards the end of that document, i found this -
> "After uploading the user keys, configure SSSD to use FreeIPA as one 
> of its identity domains and set up OpenSSH to use the SSSD tooling for 
> managing user keys."
> No instructions in the document on how to do this.
>
> Do i need to do anything on the centos client-side to make this work?
>
>
>
> _______________________________________________
> Freeipa-users mailing list
> Freeipa-users at redhat.com
> https://www.redhat.com/mailman/listinfo/freeipa-users
yum install ipa-client

then run ipa-client-install with arguments you need (see man pages or 
manual) which will configure your client. Depending on the version it 
will also be able to configure SSH integration.

See man on ipa-client-install

-- 
Thank you,
Dmitri Pal

Sr. Engineering Manager IdM portfolio
Red Hat, Inc.

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://listman.redhat.com/archives/freeipa-users/attachments/20140417/ffff7482/attachment.htm>


More information about the Freeipa-users mailing list