LXC and FreeIPA

thinkdez

New Member
Aug 16, 2023
4
0
1
I am currently migrating some VM's to LXC's and I use FreeIPA for authentication etc. I was able to install the FreeIPA client on the LXC using the --no-ntp flag but when I try to login with a user account I get an error:
Code:
sshd[3742]: fatal: initgroups: testuser: Invalid argument

I believe this is due to the LXC being unprivleged and I tried to map the users but the documentation I am reading is confusing me.

Should I be joining my Proxmox VE host to FreeIPA first? Then map the UID and GID's to the LXC Guest? OR can I just do a direct connection to the LXC?

Does this bind the LXC to a specific host or if I copy the config to all hosts in the cluster will I be able to migrate my LXC's across hosts?

I came from a VMWare background so I have this mentality to not modify the Host system as little as possible but this doesn't seem to be the case with Proxmox.

Thanks
 

About

The Proxmox community has been around for many years and offers help and support for Proxmox VE, Proxmox Backup Server, and Proxmox Mail Gateway.
We think our community is one of the best thanks to people like you!

Get your subscription!

The Proxmox team works very hard to make sure you are running the best software and getting stable updates and security enhancements, as well as quick enterprise support. Tens of thousands of happy customers have a Proxmox subscription. Get yours easily in our online shop.

Buy now!