IPA is an integrated solution to provide centrally managed Identity (users,
hosts, services), Authentication (SSO, 2FA), and Authorization
(host access control, SELinux user roles, services). The solution provides
features for further integration with Linux based clients (SUDO, automount)
and integration with Active Directory based infrastructures (Trusts).
If you are installing an IPA server, you need to install this package.
ipa-advise Provides customized advice for various IPA configuration issues. For the list of possible ADVICEs available, run the ipa-advise with no arguments. ipa-backup Two kinds of backups: full and data-only. The back up is optionally encrypted using either the default root GPG key or a named key. No passphrase is supported... ipa-ca-install Adds a CA as an IPA-managed service. This requires that the IPA server is already installed and configured. The replica_file is created using the... ipa-compat-manage Run the command with the enable option to enable the compat plugin. Run the command with the disable option to disable the compat plugin. Run the command with... ipa-csreplica-manage Manages the CA replication agreements of an IPA server for domain at domain level 0. To manage CA replication agreements in a domain at domain level 1, use IPA... ipa-kra-install Adds a KRA as an IPA-managed service. This requires that the IPA server is already installed and configured, including a CA. The KRA (Key Recovery Authority) is... ipa-ldap-updater ipa-ldap-updater is utility which can be used to update the IPA LDAP server. An update file describes an LDAP entry and a set of operations to be performed on... ipa-managed-entries Run the command with the enable option to enable the Managed Entry plugin. Run the command with the disable option to disable the Managed Entry plugin. Run the... ipa-nis-manage Run the command with the enable option to enable the NIS plugin. Run the command with the disable option to disable the NIS plugin. Run the command with the... ipa-otptoken-import Running the command will attempt to import all tokens specified in infile. If the command is unable to import a token, the reason for the failure will be... ipa-replica-conncheck When an IPA replica is being installed a network connection between a replica machine and a replicated IPA master machine has to be prepared for master-replica... ipa-replica-install Configures a new IPA server that is a replica of the server. Once it has been created it is an exact copy of the original IPA server and is an equal master... ipa-replica-manage Manages the replication agreements of an IPA server. To manage IPA replication agreements in a domain at domain level 1, use IPA CLI or Web UI, see `ipa help... ipa-replica-prepare Generates a replica file that may be used with ipa-replica-install to create a replica of an IPA server. A replica can be created on any IPA master or replica... ipa-restore Only the name of the backup needs to be passed in, not the full path. Backups are stored in a subdirectory in /var/lib/ipa/backup. If a backup is in another... ipa-server-certinstall Replace the current SSL Directory and/or Apache server certificate(s) with the certificate in the specified files. The files are accepted in PEM and DER... ipa-server-install Configures the services needed by an IPA server. This includes setting up a Kerberos Key Distribution Center (KDC) and a Kadmin daemon with an LDAP back-end... ipa-server-upgrade ipa-server-upgrade is used to upgrade IPA server when the IPA packages are being updated. It is not intended to be executed by end-users. ipa-server-upgrade... ipa-winsync-migrate Migrates AD users created by winsync agreement to ID overrides in the Default Trust View, thus preserving the actual POSIX attributes already established. Prior... ipactl A tool to help an administer control an IPA environment. IPA glues several discrete services together to work in concert and the order that these services are... ipa-upgradeconfig A tool to update the IPA Apache configuration during an upgrade. It examines the VERSION value in the head of /etc/httpd/conf.d/ipa.conf and...