FreeIPA Identity

ipa-01; ipa-02 replica planned

Category

INFRASTRUCTURE

Status

Operational

Premise

Linux identity management and Kerberos KDC

Goals

  • Primary + replica for HA

  • DNS integration with BIND

  • Certificate integration with Vault PKI

Current State

Production - ipa-01 serving all Linux hosts

Next Steps

  • Deploy ipa-02 replica on kvm-02

  • Configure DNS zone delegation

Architecture Notes

Replication: ipa-01 ↔ ipa-02 (multi-master)