François,

Thanks you, about the architecture redundancy strategy.
Is not the final architecture. The new architecture will be have more redundancy with more Master and more replicat server in each site, to authenticate several ipa-client.
I will deploy more redundancy, but never between each branch of network.

You think that its the better architecture ? or i must manage by localisation ?

Bien à vous

Mr Karim Bourenane
 


Le lun. 29 avr. 2019 à 23:09, François Cami <fcami@redhat.com> a écrit :
On Mon, Apr 29, 2019 at 10:32 PM Karim Bourenane via FreeIPA-users
<freeipa-users@lists.fedorahosted.org> wrote:
>
> Hello Jochen
>
> Thanks you or your reply.
> My goal, is to authenticate differents users from each client network interface. If the first ipa server goes down (or network unreachable), then the admin user can access to the second network interface to make change/correct .....
>
> The goals also, is between the the IPA1 et IPA2, the servers don't have any link.
>
> If i understand well, is not possible easyer, because i must change or merge the krb5.keytab + sssd.conf right ?
>
> Also i have another question:
> What is the website to begun the full deloyement of FreeIPA ?
> Because im litle lost with blog/freeipa.org/fedora/redhat, and somes commands was depreciated ...
> Im in last version of IPA : v4.6.4

This is not the last version by a long shot:
https://github.com/freeipa/freeipa/releases

For IPA 4.6 you might want to use RHEL 7 documentation:
https://access.redhat.com/documentation/en-us/red_hat_enterprise_linux/7/html/linux_domain_identity_authentication_and_policy_guide/index

> Regards
> Bien à vous
>
> Mr Karim Bourenane
>
>
> _______________________________________________
> FreeIPA-users mailing list -- freeipa-users@lists.fedorahosted.org
> To unsubscribe send an email to freeipa-users-leave@lists.fedorahosted.org
> Fedora Code of Conduct: https://getfedora.org/code-of-conduct.html
> List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
> List Archives: https://lists.fedorahosted.org/archives/list/freeipa-users@lists.fedorahosted.org