PVE as FreeIPA client

cyruspy

Renowned Member
Jul 2, 2013
146
9
83
Hello!,

We add all our Linux machines under FreeIPA administration (+AD trust) and would like to include over hosts too to achieve:

- no root password is shared to admins
- named users are always used
- password expiration is handled centrally
- HBAC managed centrally
- sudoers managed centrally

Are there any known drawbacks with this configuration?
 
Hello,
I have a similar use case. I was searching for something and found this forum post.

I am asking switch in the other task, which may be of interest to you.