FreeIPA : User Accounts Management2024/11/07 |
This is the Basic Operation of User Accounts Management. |
|
[1] | Add FreeIPA user accounts. |
[root@dlp ~]# ipa user-add fedora --first=Fedora --last=Linux --password
Password: # set password
Enter Password again to verify:
-------------------
Added user "fedora"
-------------------
User login: fedora
First name: Fedora
Last name: Linux
Full name: Fedora Linux
Display name: Fedora Linux
Initials: FL
Home directory: /home/fedora
GECOS: Fedora Linux
Login shell: /bin/bash
Principal name: fedora@IPA.SRV.WORLD
Principal alias: fedora@IPA.SRV.WORLD
User password expiration: 20241107005450Z
Email address: fedora@ipa.srv.world
UID: 201600003
GID: 201600003
Password: True
Member of groups: ipausers
Kerberos keys available: True
|
[2] | Change password of FreeIPA user account. |
[root@dlp ~]# ipa passwd fedora New Password: Enter New Password again to verify: ------------------------------------------- Changed password for "fedora@IPA.SRV.WORLD" ------------------------------------------- |
[3] | Lock or Unlock FreeIPA user accounts. |
[root@dlp ~]# ipa user-disable fedora ------------------------------ Disabled user account "fedora" ------------------------------[root@dlp ~]# ipa user-enable fedora ----------------------------- Enabled user account "fedora" ----------------------------- |
[4] | Search FreeIPA user accounts. |
[root@dlp ~]# ipa user-find fedora -------------- 1 user matched -------------- User login: fedora First name: Fedora Last name: Linux Home directory: /home/fedora Login shell: /bin/bash Principal name: fedora@IPA.SRV.WORLD Principal alias: fedora@IPA.SRV.WORLD Email address: fedora@ipa.srv.world UID: 201600003 GID: 201600003 Account disabled: False ---------------------------- Number of entries returned 1 ----------------------------[root@dlp ~]# ipa user-show --raw fedora uid: fedora givenname: Fedora sn: Linux homedirectory: /home/fedora loginshell: /bin/bash krbcanonicalname: fedora@IPA.SRV.WORLD krbprincipalname: fedora@IPA.SRV.WORLD mail: fedora@ipa.srv.world uidnumber: 201600003 gidnumber: 201600003 nsaccountlock: FALSE has_password: TRUE has_keytab: TRUE |
[5] | Remove FreeIPA user accounts. |
[root@dlp ~]# ipa user-del fedora --------------------- Deleted user "fedora" --------------------- |
[6] | Add FreeIPA group accounts. |
[root@dlp ~]# ipa group-add --desc='Development Group' development ------------------------- Added group "development" ------------------------- Group name: development Description: Development Group GID: 201600006 |
[7] | Add members to a FreeIPA group account. |
[root@dlp ~]# ipa group-add-member --users=redhat development Group name: development Description: Development Group GID: 201600006 Member users: redhat ------------------------- Number of members added 1 ------------------------- |
[8] | Add FreeIPA group to FreeIPA group nested. |
[root@dlp ~]# ipa group-add-member --groups=development hiroshima Group name: hiroshima Description: Hiroshima Group GID: 201600007 Member groups: development Indirect Member users: redhat ------------------------- Number of members added 1 ------------------------- |
[9] | Search FreeIPA group accounts. |
[root@dlp ~]# ipa group-find development --------------- 1 group matched --------------- Group name: development Description: Development Group GID: 201600006 ---------------------------- Number of entries returned 1 ---------------------------- |
[10] | Remove FreeIPA group accounts. |
[root@dlp ~]# ipa group-del hiroshima ------------------------- Deleted group "hiroshima" ------------------------- |
Sponsored Link |