Authentication Server

From sshcWiki
Revision as of 17:17, 9 March 2014 by Cswingler (talk | contribs) (Created a to-do list for FreeIPA.)
(diff) ← Older revision | Latest revision (diff) | Newer revision → (diff)
Jump to navigation Jump to search

We're looking to use FreeIPA (http://www.freeipa.org/page/Main_Page) for an authentication store within the space.

To do list

Here's a list of things that need to still be done before we put it into production.

  • Install in a VM
  • Get properly backed up
  • Get our PEM from IANA, (request submitted March 9 2014)
  • Extend the LDAP schema to hold additional member information (CRM ID, join date, ID card number, key number, etc)
  • Set up CA and such
  • Set up VPN link between sshc0 and the space (this depends on the CA being set up properly)
  • Migrate user data from 389 on sshc0 to FreeIPA
  • Enroll all existing systems in it