FreeIPA Identity
ipa-01; ipa-02 replica planned
Category |
INFRASTRUCTURE |
Status |
Operational |
Premise
Linux identity management and Kerberos KDC
Goals
-
Primary + replica for HA
-
DNS integration with BIND
-
Certificate integration with Vault PKI
Current State
Production - ipa-01 serving all Linux hosts
Next Steps
-
Deploy ipa-02 replica on kvm-02
-
Configure DNS zone delegation
Architecture Notes
|
Replication: ipa-01 ↔ ipa-02 (multi-master) |