Rocky_Linux_8
Sponsored Link

FreeIPA : User Accounts Management2021/08/04

 
This is the Basic Operation of User Accounts Management.
[1] Add FreeIPA user accounts.
[root@dlp ~]#
ipa user-add rocky --first=Rocky --last=Linux --password

Password:
Enter Password again to verify:
------------------
Added user "rocky"
------------------
  User login: rocky
  First name: Rocky
  Last name: Linux
  Full name: Rocky Linux
  Display name: Rocky Linux
  Initials: RL
  Home directory: /home/rocky
  GECOS: Rocky Linux
  Login shell: /bin/sh
  Principal name: rocky@IPA.SRV.WORLD
  Principal alias: rocky@IPA.SRV.WORLD
  User password expiration: 20210804010641Z
  Email address: rocky@ipa.srv.world
  UID: 1435800001
  GID: 1435800001
  Password: True
  Member of groups: ipausers
  Kerberos keys available: True
[2] Change password of FreeIPA user account.
[root@dlp ~]#
ipa passwd rocky

New Password:
Enter New Password again to verify:
------------------------------------------
Changed password for "rocky@IPA.SRV.WORLD"
------------------------------------------
[3] Lock or Unlock FreeIPA user accounts.
[root@dlp ~]#
ipa user-disable rocky

-----------------------------
Disabled user account "rocky"
-----------------------------
[root@dlp ~]#
ipa user-enable rocky

----------------------------
Enabled user account "rocky"
----------------------------
[4] Search FreeIPA user accounts.
[root@dlp ~]#
ipa user-find rocky

--------------
1 user matched
--------------
  User login: rocky
  First name: Rocky
  Last name: Linux
  Home directory: /home/rocky
  Login shell: /bin/sh
  Principal name: rocky@IPA.SRV.WORLD
  Principal alias: rocky@IPA.SRV.WORLD
  Email address: rocky@ipa.srv.world
  UID: 1435800001
  GID: 1435800001
  Account disabled: False
----------------------------
Number of entries returned 1
----------------------------

[root@dlp ~]#
ipa user-show --raw rocky

  uid: rocky
  givenname: Rocky
  sn: Linux
  homedirectory: /home/rocky
  loginshell: /bin/sh
  krbcanonicalname: rocky@IPA.SRV.WORLD
  krbprincipalname: rocky@IPA.SRV.WORLD
  mail: rocky@ipa.srv.world
  uidnumber: 1435800001
  gidnumber: 1435800001
  nsaccountlock: FALSE
  has_password: TRUE
  has_keytab: TRUE
[5] Remove FreeIPA user accounts.
[root@dlp ~]#
ipa user-del rocky

-------------------
Deleted user "rocky"
-------------------
[6] Add FreeIPA group accounts.
[root@dlp ~]#
ipa group-add --desc='Development Group' development

-------------------------
Added group "development"
-------------------------
  Group name: development
  Description: Development Group
  GID: 1435800005
[7] Add members to a FreeIPA group account.
[root@dlp ~]#
ipa group-add-member --users=redhat development

  Group name: development
  Description: Development Group
  GID: 1435800005
  Member users: redhat
-------------------------
Number of members added 1
-------------------------
[8] Add FreeIPA group to FreeIPA gtoup nested.
[root@dlp ~]#
ipa group-add-member --groups=development hiroshima

  Group name: hiroshima
  Description: Hiroshima Group
  GID: 1435800006
  Member groups: development
  Indirect Member users: redhat
-------------------------
Number of members added 1
-------------------------
[9] Search FreeIPA group accounts.
[root@dlp ~]#
ipa group-find development

---------------
1 group matched
---------------
  Group name: development
  Description: Development Group
  GID: 1435800005
----------------------------
Number of entries returned 1
----------------------------
[10] Remove FreeIPA group accounts.
[root@dlp ~]#
ipa group-del hiroshima

-------------------------
Deleted group "hiroshima"
-------------------------
Matched Content