You are on page 1of 1

RHCE NW-Service Quickreference sheet

Service: IPA

Packages and Installation


Name Description
nsss-pam-ldapd ldap client service
pam_krb5 pam kerberos module
krb5-workstation kinit

Config Tasks
Enable LDAP Authentication and ID
task cmd
client settings server: ldap://server.domain.com
base dn: dc=domain,dc=com
config file /etc/openldap/ldap.conf
/etc/nsswitch.conf

Enable Kerberos Authentication


task cmd
client settings realm: DOMAIN.COM
kdc: kdc.domain.com
admin: admin.domain.com
config file /etc/krb5.conf

Add service
task cmd
add service ipa service-add nfs/host.realm
export key ipa-getkeytab -k nfs-client.keytab -p nfs/ipa-
client.test.murxs.ch -s ipa.test.murxs.ch

You might also like