[Freeipa-users] Still unclear about relation between IPA DNS domain and company DNS domain.

Pieter Nagel pieter at lautus.net
Thu Dec 8 09:12:14 UTC 2016


On Thu, Dec 8, 2016 at 10:59 AM, Alexander Bokovoy <abokovoy at redhat.com>
wrote:

> It is really simply: your DNS domain named as your Kerberos realm must
> be under your control, one way or another, to allow automatic discovery
> of resources to work.
>

Thanks, this explanation makes it crystal clear. This exact phrasing would
have made the docs much clearer too, IMO.

Setting the realm to the DNS domain that the FreeIPA internal DNS server
serves is just one simple out-of-the box way to get DNS domain named as
your Kerberos realm that is under your control, in other words.

-- 
Pieter Nagel
Lautus Solutions (Pty) Ltd
Building 27, The Woodlands, 20 Woodlands Drive, Woodmead, Gauteng
0832587540
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://listman.redhat.com/archives/freeipa-users/attachments/20161208/f15900cb/attachment.htm>


More information about the Freeipa-users mailing list