On 12 Sep 2018, at 13:07, Alexander Bokovoy via FreeIPA-users <freeipa-users@lists.fedorahosted.org> wrote:

On ke, 12 syys 2018, Ryan via FreeIPA-users wrote:
Hi, All

Off the bat I would like to say being new to freeIPA and rolling out
successful deployment to manage our servers has been amazing, very few

Which brings me to my next question, I have been asked if FreeIPA can
be uses with Samba4 as a Domain Controller in our environment. After
much reading its not as simple as it might sound.

In saying that, my question is simple.

How or what would be the best way to keep the AD users and FreeIPA
users in sync. All I am really looking for is to Auth Users on the new
Samba4 AD server. Can this be done or not.
It currently cannot be done. Requires functionality not available in

Yeah thats what I thought, just need to confirm.

What would you suggest the best way to dump users from ldap and the populate samba with users and random passwords? I understand this is out of scope of freeIPA.

/ Alexander Bokovoy
Sr. Principal Software Engineer
Security / Identity Management Engineering
Red Hat Limited, Finland
FreeIPA-users mailing list -- freeipa-users@lists.fedorahosted.org
To unsubscribe send an email to freeipa-users-leave@lists.fedorahosted.org
Fedora Code of Conduct: https://getfedora.org/code-of-conduct.html
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: https://lists.fedorahosted.org/archives/list/freeipa-users@lists.fedorahosted.org