Discussion
Loading...

Post

Log in
  • About
  • Code of conduct
  • Privacy
  • About Bonfire
vermaden
vermaden
@vermaden@mastodon.social  ยท  activity timestamp 6 days ago

New ๐—ก๐—ฎ๐˜๐—ถ๐˜ƒ๐—ฒ ๐—™๐—ฟ๐—ฒ๐—ฒ๐—•๐—ฆ๐—— ๐—ž๐—ฒ๐—ฟ๐—ฏ๐—ฒ๐—ฟ๐—ผ๐˜€/๐—Ÿ๐——๐—”๐—ฃ ๐˜„๐—ถ๐˜๐—ต ๐—™๐—ฟ๐—ฒ๐—ฒ๐—œ๐—ฃ๐—”/๐—œ๐——๐—  article based on @Larvitz work - credit goes to him.

https://vermaden.wordpress.com/2026/02/18/native-freebsd-kerberos-ldap-with-freeipa-idm/

#verblog #freebsd #kerberos #idm #freeipa #ssh

๐šŸ๐šŽ๐š›๐š–๐šŠ๐š๐šŽ๐š—

Native FreeBSD Kerberos/LDAP with FreeIPA/IDM

I want to make this clear in the first sentence because its biggest chance that people will read it โ€“ this article is entirely based on work done by Christian Hofstede-Kuhn (Larvitz) that wroโ€ฆ
  • Copy link
  • Flag this post
  • Block
Larvitz :fedora: :redhat:
Larvitz :fedora: :redhat:
@Larvitz@burningboard.net  ยท  activity timestamp 6 days ago

@vermaden Great araticle! :-)

Just some security nitpicking:

cp /root/fbsd15.keytab /usr/share/ipa/html/

I wouldn't do that in a production environment. This puts the (sensitive) Keytab on the Webroot of the IPA server.

Using SCP would be safer. But for a lab-environment, this is probably fine.

  • Copy link
  • Flag this comment
  • Block
vermaden
vermaden
@vermaden@mastodon.social  ยท  activity timestamp 5 days ago

@Larvitz

Thanks :)

I modified the article to copy the keytab using scp(1) instead.

  • Copy link
  • Flag this comment
  • Block

BT Free Social

BT Free is a non-profit organization founded by @ozoned@btfree.social . It's goal is for digital privacy rights, advocacy and consulting. This goal will be attained by hosting open platforms to allow others to seamlessly join the Fediverse on moderated instances or by helping others join the Fediverse.

BT Free Social: About ยท Code of conduct ยท Privacy ยท
Bonfire social ยท 1.0.2-alpha.34 no JS en
Automatic federation enabled
Log in
Instance logo
  • Explore
  • About
  • Code of Conduct