The only option right now is a cross-forest trust with AD where AD is the primary data store for users and groups.

On Thu, May 23, 2019 at 7:36 AM LUCAS GUILHERME DIEDRICH via FreeIPA-users <freeipa-users@lists.fedorahosted.org> wrote:
Yes, it would be awesome, as i use Freeipa as the responsible for handling user and groups information, it would be nice to trust this to AD ad i just want to use it to authentication.

What should be the workaround about this? sync users and groups to AD?

Thanks.
_______________________________________________
FreeIPA-users mailing list -- freeipa-users@lists.fedorahosted.org
To unsubscribe send an email to freeipa-users-leave@lists.fedorahosted.org
Fedora Code of Conduct: https://getfedora.org/code-of-conduct.html
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: https://lists.fedorahosted.org/archives/list/freeipa-users@lists.fedorahosted.org


--
Kristian Petersen
System Administrator
BYU Dept. of Chemistry and Biochemistry