FreeIPA : Add User Accounts2021/03/11 |
Add User Accounts on FreeIPA Server.
|
|
[1] | Add a user. The password set on here is required to change at initial login. |
[root@dlp ~]# ipa user-add cent --first=CentOS --last=Linux --password
Password: # set password
Enter Password again to verify:
-----------------
Added user "cent"
-----------------
User login: cent
First name: CentOS
Last name: Linux
Full name: CentOS Linux
Display name: CentOS Linux
Initials: CL
Home directory: /home/cent
GECOS: CentOS Linux
Login shell: /bin/sh
Principal name: cent@IPA.SRV.WORLD
Principal alias: cent@IPA.SRV.WORLD
User password expiration: 20210310062149Z
Email address: cent@ipa.srv.world
UID: 1611800001
GID: 1611800001
Password: True
Member of groups: ipausers
Kerberos keys available: True
# confirm [root@dlp ~]# ipa user-find cent -------------- 1 user matched -------------- User login: cent First name: CentOS Last name: Linux Home directory: /home/cent Login shell: /bin/sh Principal name: cent@IPA.SRV.WORLD Principal alias: cent@IPA.SRV.WORLD Email address: cent@ipa.srv.world UID: 1611800001 GID: 1611800001 Account disabled: False ---------------------------- Number of entries returned 1 ---------------------------- |
[2] | Add Existing local Users to FreeIPA Directory. (set the same password with the username on this example, but it is required to change at initial login) |
[root@dlp ~]#
vi ipauser.sh
# extract local users who have 1000-9999 digit UID # this is an example #!/bin/bash for line in `grep "x:[1-9][0-9][0-9][0-9]:" /etc/passwd` do USER=`echo $line | cut -d: -f1` FIRST=`echo $line | cut -d: -f5 | awk {'print $1'}` LAST=`echo $line | cut -d: -f5 | awk {'print $2'}` [ ! "$FIRST" ] && FIRST=$USER [ ! "$LAST" ] && LAST=$USER echo $USER | ipa user-add $USER --first=$FIRST --last=$LAST --password done sh ipauser.sh ------------------- Added user "redhat" ------------------- User login: redhat First name: redhat Last name: redhat Full name: redhat redhat Display name: redhat redhat Initials: rr Home directory: /home/redhat GECOS: redhat redhat Login shell: /bin/sh Principal name: redhat@IPA.SRV.WORLD Principal alias: redhat@IPA.SRV.WORLD User password expiration: 20210310062322Z Email address: redhat@ipa.srv.world UID: 1611800003 GID: 1611800003 Password: True Member of groups: ipausers Kerberos keys available: True ..... ..... |
Sponsored Link |