Changes

Jump to: navigation, search

Authentication

249 bytes removed, 08:24, 3 January 2019
no edit summary
TODOVTLUUG uses [[Infrastructure: ExpandChimera chimera]] as it's FreeIPA server, and all VTLUUG hosts except [[Infrastructure:Joey joey]], the router, are in its domain.
VTLUUG has been was Kerberos and LDAP for authentication until the [[CVL eviction]]. We have now migrated to an LDAP only domain due to a lack of IPv6 on behind router.ece.vt.edu. The old Kerberos server was configured to work on IPv6 only therefore we were required to migrate away from its use for authentication.== Account maintenance instructions ==
With the current deployment acidburn should be acceptable through normal password authentication over sshAll users can log into [[https://chimera.vtluug. There is no need org Chimera's FreeIPA web GUI] to configure tickets or anything else Kerberos relatededit their account. Yes, it does have a self signed cert.Get over it /s
==Account maintenance instructions==For management of the entire domain, officers are able to add, remove, or modify users in any way.
All users will be able == History == VTLUUG has been was Kerberos and LDAP for authentication until the [[CVL eviction]]. We then migrated to use standard shell commands (such as chsh) an LDAP only domain due to change attributes a lack of their own accountIPv6 on behind router. Additionally they can make direct requests to the LDAP server (razorece.vtluugvt.org) using ldapmodify and edu.ldif files The old Kerberos server was configured to change attributes as wellwork on IPv6 only therefore we were required to migrate away from its use for authentication. Explaining  With the old deployment, [[Infrastructure:Acidburn acidburn]] should be acceptable through normal password authentication over ssh.ldif files and ldapmodify There is beyond the scope of this articleno need to configure tickets or anything else Kerberos related.
For management of the entire domain officers who know the LDAP root users credentials will be able to log in to the LDAP Administrator web application running on razor.vtluug.org. Information on this is really only shared on a need to know basis between officers, and the content is not entirely appropriate for a public wiki.
[[Category:Infrastructure]]
[[Category:Needs restoration]]

Navigation menu