[Freeipa-users] Grant IPA Users for AD resscources

Martin Kosek mkosek at redhat.com
Thu Jun 11 14:33:25 UTC 2015


On 06/11/2015 02:43 PM, Alexander Bokovoy wrote:
> On Thu, 11 Jun 2015, Henry Hofmann wrote:
>> -----BEGIN PGP SIGNED MESSAGE-----
>> Hash: SHA256
>>
>> Hello,
>>
>> I'm using CentOS7 with FreeIPA 4.1.4 and an Active Directory 2012 with an
>> Bidirectional Domain Trust.
>>
>> The Forests are:
>> IPA = devipa.local
>> AD = intern.noc.local
>>
>> I can add AD users to IPA groups and have access to the Resources.  How
>> can I add IPA user to Active Directory resources like groups? I can't
>> find an option and add the member with "user1 at devipa.local or
>> DEVIPA\user1" does not work to add the user in a Active Directory
>> group.
> Not supported yet as we don't have Global Catalog implementation.

... aaand a ticket, in case you want to subscribe for updates:

https://fedorahosted.org/freeipa/ticket/3125




More information about the Freeipa-users mailing list