Hello all.
I am trying to migrate my users from one ipa to another one. I was able to import the users and groups with 'ipa migrate-ds'. However the migration process generates new ipaUniqueIds.
IPA is my source of users for keycloak user federation and other applications that use ipaUniqueId to identify the user.
When syncing from ipa, they now report a conflict as they should.
So is it possible (and how) to manually set the ipaUniqueId to the value it had originally?
I have seen that ipa user-mod --setattr is now locked for this attribute : https://bugzilla.redhat.com/show_bug.cgi?id=634194
Thank you for any pointer to a solution.
Antoine