Hello Lars, hello Alexander,
yes, you are right Lars. It is about AD users from a Samba-based domain (Fedora 30 with
Samba 4.10) accessing FreeIPA resources.
I take this instruction from the official IPA Web Side
(
https://www.freeipa.org/page/Active_Directory_trust_setup)
and i get no access as a Windows Domain Admin to freeipa Resources.
With Windows 2012 it works, no problem. :-(
Alexander, do yo have in Mind when the other way would be implemented. I think this would
be a great feature to access as an FreeIPA User to an Windows / Samba AD and use Resource
from the AD Side.
Regards
Dirk