IPA FreeIPA Authentication

From Define Wiki
Revision as of 22:40, 23 August 2023 by David (talk | contribs) (Created page with "Notes from CIX system == Reset a user password == <pre> nuig-crt 23:29:56 [root@head ~]# ipa user-mod mwalsh --random ipa: ERROR: Ticket expired nuig-crt 23:30:15 [root@head...")
(diff) ← Older revision | Latest revision (diff) | Newer revision → (diff)
Jump to navigation Jump to search

Notes from CIX system

Reset a user password

nuig-crt 23:29:56 [root@head ~]# ipa user-mod mwalsh --random
ipa: ERROR: Ticket expired
nuig-crt 23:30:15 [root@head ~]# ipa user-mod mwalsh --password
ipa: ERROR: Ticket expired
nuig-crt 23:30:29 [root@head ~]# cat /etc/define/passwords/ipa_admin.txt | kinit admin
Password for admin@CLUSTER.INTERNAL:
nuig-crt 23:31:40 [root@head ~]# ipa user-mod mwalsh --random
----------------------
Modified user "mwalsh"
----------------------
  User login: mwalsh
  First name: Maria
  Last name: walsh
  Home directory: /define/home/mwalsh
  Login shell: /bin/bash
  Principal name: mwalsh@CLUSTER.INTERNAL
  Principal alias: mwalsh@CLUSTER.INTERNAL
  Email address: mwalsh@cluster.internal
  Random password: <redacted>
  UID: 2035
  GID: 2035
  Account disabled: False
  Password: True
  Member of groups: admins, ipausers
  Indirect Member of Sudo rule: sysadmin_sudo
  Indirect Member of HBAC rule: allow_admins
  Kerberos keys available: True

Search for users

ipa user-find | grep -i dpower

Show config

ipa config-show

History dump

   13  14/04/22 18:32:03 cat /etc/define/passwords/ipa_admin.txt | kinit]
   14  14/04/22 18:32:05 cat /etc/define/passwords/ipa_admin.txt | kinit
   15  14/04/22 18:32:18   ipa group-add admins --gid=1500
   16  14/04/22 18:32:19   ipa user-add rsupport --first=Remote --last Support --shell=/bin/bash --home=/define/home/rsupport
   17  14/04/22 18:32:21   ipa user-add test --first=test --last=user --shell=/bin/bash --home=/define/home/test
   18  14/04/22 18:32:23   ipa group-add-member admins --users=rsupport
   24  14/04/22 19:00:14 cat /etc/define/passwords/ipa_admin.txt | kinit
   25  14/04/22 19:00:30 ipa user-mod test --password
   33  14/04/22 19:13:02 ipa user-mod rsupport --password
   36  14/04/22 19:18:36 ipa user-add bdigby --first=Barry --last=Digby --password
   37  15/04/22 10:37:54 cat /etc/define/passwords/ipa_admin.txt
   39  15/04/22 10:45:51 ipa sudorule-add sysadmin_sudo     --hostcat=all --runasusercat=all --runasgroupcat=all --cmdcat=all
   43  04/05/22 16:46:06 ipa host-del antony-test.private
   45  04/05/22 16:46:53 ipa host-del antony-test.private
   46  04/05/22 16:47:10 ipa host-del dnsrecord-del antony-test.private
   47  04/05/22 16:47:21 ipa host-del dnsrecord-del private antony-test
   48  04/05/22 16:47:42 ipa host-del dnsrecord-del private antony-test --a-rec=185.93.31.147
   49  04/05/22 16:47:53 ipa dnsrecord-del private antony-test --a-rec=185.93.31.147
   54  04/05/22 15:34:49 less /etc/define/passwords/ipa_admin.txt
   60  04/05/22 16:34:48 less /etc/define/passwords/ipa_admin.txt
   62  23/08/23 23:24:21 mv cloudcix.png /usr/share/ipa/ui/css/
   63  23/08/23 23:24:21 cd /usr/share/ipa/ui/
  155  23/05/22 13:43:31 ipa user list
  156  23/05/22 13:43:51 less /etc/define/passwords/ipa_admin.txt
  157  23/05/22 13:44:08 kinit admin < /etc/define/passwords/ipa_admin.txt
  158  23/05/22 13:44:15 ipa user list
  159  23/05/22 13:44:34 ipa user-find
  180  27/05/22 10:24:58 ls /etc/define/passwords/ipa_admin.txt
  182  27/05/22 10:27:48 source  ~antony/venvs/ipa/bin/activate
  213  27/05/22 12:39:55 dnf search python_freeipa
  215  27/05/22 12:40:09 dnf search python | grep ipa
  216  27/05/22 12:40:21 dnf install python3-freeipa
  219  27/05/22 12:42:49 source  ~antony/venvs/ipa/bin/activate
  333  30/05/22 20:02:07 ipa find user ssmith
  335  30/05/22 20:02:38 kinit admin < /etc/define/passwords/ipa_admin.txt
  336  30/05/22 20:02:41 ipa find user ssmith
  337  30/05/22 20:02:48 ipa find-user ssmith
  338  30/05/22 20:02:58 ipa user-finde ssmith
  339  30/05/22 20:03:01 ipa us
  410  13/01/23 16:40:32 ipa user-fin
  414  16/01/23 13:14:50 kinit admin < /etc/define/passwords/ipa_admin.txt
  415  16/01/23 13:15:02 cat /etc/define/passwords/ipa_admin.txt | kinit
  416  16/01/23 13:15:15 cat /etc/define/passwords/ipa_admin.txt
  418  16/01/23 13:15:31 cat /etc/define/passwords/ipa_admin.txt
  419  16/01/23 13:15:38 cat /etc/define/passwords/ipa_admin.txt | kinit
  420  16/01/23 13:16:10 ipa param-show
  421  16/01/23 13:16:22 ipa config-show
  427  23/02/23 09:51:54 cat /etc/define/passwords/ipa_admin.txt | kinit
  428  23/02/23 09:52:04 ipa host
  429  23/02/23 09:52:24 less /etc/define/passwords/ipa_admin.txt
  431  23/02/23 09:52:39 ipa host
  432  23/02/23 09:53:04 ipa host-find
  433  23/02/23 09:53:43 ipa host-add small-002.cluster.internal
  436  23/02/23 10:02:26 pdsh -w 10.0.0.[12-14] ipa-client-install --uninstall
  439  23/02/23 10:03:17 pdsh -w 10.0.0.[12-14] ipa-client-install --uninstall
  441  23/02/23 10:07:18 pdsh -w 10.0.0.[12-14] ipa-client-install --uninstall
  461  23/02/23 11:47:25 ipa user-find
  465  03/04/23 18:14:58 cat /etc/define/passwords/ipa_admin.txt | kinit
  466  03/04/23 18:15:11 ipa config0show
  467  03/04/23 18:15:15 ipa config-show
  468  03/04/23 18:15:45 ipa config-mod defaultshell /bin/bash
  469  03/04/23 18:15:51 ipa config-mod --defaultshell /bin/bash
  471  03/04/23 18:18:02 ipa user-add
  472  03/04/23 18:18:38 ipa user-mod --help
  473  03/04/23 18:20:13 ipa user-mod --random hanthony
  474  03/04/23 18:20:55 ipa user-mod --email "H.Anthony1@nuigalway.ie" hanthony
  475  03/04/23 18:21:04 ipa user-mod --random hanthony
  486  03/04/23 18:28:14 ipa user-del hanthony
  490  03/04/23 18:41:03 ipa user-find
  491  03/04/23 18:42:22 ipa user-find | grep harr
  492  03/04/23 18:42:25 ipa user-find | grep -i harr
  493  03/04/23 18:44:00 ipa user-add --random --first Harrison --last Anthony --email "H.Anthony1@nuigalway.ie" --random
  494  03/04/23 18:44:20 ipa user-add --random --first Harrison --last Anthony --email "H.Anthony1@nuigalway.ie"
  498  04/04/23 17:00:08 ipa user-find
  530  22/06/23 22:03:55 cat /etc/define/passwords/ipa_admin.txt
  531  22/06/23 22:04:06 cat /etc/define/passwords/ipa_admin.txt | kinit admin
  533  22/06/23 22:04:31 cat /etc/define/passwords/ipa_admin.txt | kinit admin
  550  22/06/23 22:29:18 ipa user-mod mwalsh --random
  551  22/06/23 22:37:41 ipa user-show kryan
  557  23/08/23 23:24:21 ipa user-add
  558  23/08/23 23:24:21 ipa user-add
  561  23/08/23 23:24:21 ipa user-add
  596  14/07/23 13:16:04 cat /etc/define/passwords/ipa_admin.txt | kinit admin
  597  14/07/23 13:16:15 ipa user-find