Natxo thank you. I will look at this on the machines joining the domain.

Do you know any workaround during the IPA server install?

Thanks,

On 9 Feb 2020, at 07:06, Natxo Asenjo via FreeIPA-users <freeipa-users@lists.fedorahosted.org> wrote:

hi Vinícius,


On Fri, Feb 7, 2020 at 9:29 PM Vinícius Ferrão via FreeIPA-users <freeipa-users@lists.fedorahosted.org> wrote:
Hello,

My FreeIPA server have two IP addresses. It registers itself with the internal and the external addresses. There’s a way to only register the IPs from the internal interfaces?

usually those ip addresses are tied to specific network interfaces (eth0, ens192, tun0, whatever). You can tell sssd to use only those interfaces to register its dyndns (details in man sssd-ipa, look for dyndns_iface directive)

dyndns_iface (string)
           Optional. Applicable only when dyndns_update is true. Choose the
           interface or a list of interfaces whose IP addresses should be used
           for dynamic DNS updates. Special value “*” implies that IPs from
           all interfaces should be used.

           NOTE: While it is still possible to use the old ipa_dyndns_iface
           option, users should migrate to using dyndns_iface in their config
           file.

           Default: Use the IP addresses of the interface which is used for
           IPA LDAP connection

           Example: dyndns_iface = em1, vnet1, vnet2

Regards,
Natxo

_______________________________________________
FreeIPA-users mailing list -- freeipa-users@lists.fedorahosted.org
To unsubscribe send an email to freeipa-users-leave@lists.fedorahosted.org
Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: https://lists.fedorahosted.org/archives/list/freeipa-users@lists.fedorahosted.org