diff options
author | Alexander Bokovoy <abokovoy@redhat.com> | 2012-07-13 18:12:48 +0300 |
---|---|---|
committer | Martin Kosek <mkosek@redhat.com> | 2012-07-31 17:44:35 +0200 |
commit | 68d5fe1ec7d785f127b3513f84cc632cdb1f9167 (patch) | |
tree | c0723e680c929f19f4fd2cb61eb7dfd93287d267 /install/tools/man/ipa-adtrust-install.1 | |
parent | 16ca564b1004eb672fe4ca3573e542f5a3ce014b (diff) | |
download | freeipa-68d5fe1ec7d785f127b3513f84cc632cdb1f9167.tar.gz freeipa-68d5fe1ec7d785f127b3513f84cc632cdb1f9167.tar.xz freeipa-68d5fe1ec7d785f127b3513f84cc632cdb1f9167.zip |
Ensure ipa-adtrust-install is run with Kerberos ticket for admin user
When setting up AD trusts support, ipa-adtrust-install utility
needs to be run as:
- root, for performing Samba configuration and using LDAPI/autobind
- kinit-ed IPA admin user, to ensure proper ACIs are granted to
fetch keytab
As result, we can get rid of Directory Manager credentials in ipa-adtrust-install
https://fedorahosted.org/freeipa/ticket/2815
Diffstat (limited to 'install/tools/man/ipa-adtrust-install.1')
-rw-r--r-- | install/tools/man/ipa-adtrust-install.1 | 3 |
1 files changed, 0 insertions, 3 deletions
diff --git a/install/tools/man/ipa-adtrust-install.1 b/install/tools/man/ipa-adtrust-install.1 index b61da1908..22337c3df 100644 --- a/install/tools/man/ipa-adtrust-install.1 +++ b/install/tools/man/ipa-adtrust-install.1 @@ -27,9 +27,6 @@ trust to an Active Directory domain. This requires that the IPA server is already installed and configured. .SH "OPTIONS" .TP -\fB\-p\fR \fIDM_PASSWORD\fR, \fB\-\-ds\-password\fR=\fIDM_PASSWORD\fR -The password to be used by the Directory Server for the Directory Manager user -.TP \fB\-d\fR, \fB\-\-debug\fR Enable debug logging when more verbose output is needed .TP |