[Freeipa-users] FreeIPA en Domain Trust

Martin Kosek mkosek at redhat.com
Mon Nov 23 09:54:03 UTC 2015


On 11/23/2015 10:50 AM, Winfried de Heiden wrote:
> Hi all,
> 
> For some reason, we only want to use the Active Directory user from an Active 
> Directory using a Trust. (groups like "Domain Users"  are of no use...)
> 
> Is it possible to ignore (hide) ALL groups from a particular Domain (trust)/
> 
> Kinds Regards,
> 
> Winny

This looks as a question for the client part (SSSD). I do not fully understand
the use case, you want to allow AD user to authenticate to Linux box, but you
do not want the Linux box to see any of the AD groups? What is the motivation,
if I may ask?




More information about the Freeipa-users mailing list