[Freeipa-users] different apis for adding "local" users to groups vs adding users from cft?

Marc Boorshtein marc.boorshtein at tremolosecurity.com
Sun Mar 19 13:53:38 UTC 2017


As of yet I haven't tried using the json rpc with a cft.  freeipa is on its
own.  i'll give it a try and if it doesn't work this will point me in the
right direction.

Thanks

On Sat, Mar 18, 2017 at 2:27 AM Alexander Bokovoy <abokovoy at redhat.com>
wrote:

> On pe, 17 maalis 2017, Marc Boorshtein wrote:
> >I've got the api integrated for all local users and am looking at if
> >there are any differences between that and if my ipa domain is in a
> >CFT with an AD domain.  Right now I'm using "group_add_member", should
> >that work for users coming from a trusted forest as well?
> EPARSE, but I'll try to understand what are you trying to achieve.
>
> If you were using
>    ipa group-add-member external_group --external user at AD.DOMAIN
> to add AD users as external members of a group, you continue using the
> same command on API level:
>
>    api.Command.group_add_member(u'external_group',
> external=u'user at AD.DOMAIN'})
>
> Same with JSON-RPC.
>
>
> --
> / Alexander Bokovoy
>
-- 
Marc Boorshtein
CTO Tremolo Security
marc.boorshtein at tremolosecurity.com
(703) 828-4902
Twitter - @mlbiam / @tremolosecurity
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://listman.redhat.com/archives/freeipa-users/attachments/20170319/8e91e4dd/attachment.htm>


More information about the Freeipa-users mailing list