FreeIPA IdM - Issues
Lessons Learned
| Category | Lesson |
|---|---|
DNS Separation |
Using |
Firewall |
FreeIPA installer manages firewalld rules automatically with |
SELinux |
Keep enforcing - FreeIPA is fully SELinux compatible. |
Service Accounts |
Use |
ISE Integration |
FreeIPA LDAP works with ISE for 802.1X user lookup. |
Post-Deployment Status
| Item | Status |
|---|---|
ipa-01 |
Operational, primary IdM server |
ipa-02 |
Planned (HA replica on kvm-02) |
DNS |
A/PTR records in BIND |
ISE |
LDAP integration configured |
Documentation |
11-phase runbook + service account guide |