Is there a possibility to allow ipa-server-install for a single-label domain? I would like to use IPA at home and will definitely never connect it to an AD.
Cheers, Ronald
On 1/20/20 3:39 PM, Ronald Wimmer via FreeIPA-users wrote:
Is there a possibility to allow ipa-server-install for a single-label domain? I would like to use IPA at home and will definitely never connect it to an AD.
Any version <= 4.6.4 allows the server installation with single-label domains. As far as I remember, upgrade is possible.
On the client-side, clients <= 4.6.4 can join a single-label domain master. If you want a more recent client, you will have to build the packages yourself as the ipa-4-6 branch also allows clients to join single-label domains (but there was no release with the fix).
But if you are doing a brand new deployment, what would be the rationale for using single-label domain? Since we won't allow it for more recent versions, my fear is that such a setup won't be tested any more and upgrade may reveal issues that will never be fixed.
flo
Cheers, Ronald _______________________________________________ FreeIPA-users mailing list -- freeipa-users@lists.fedorahosted.org To unsubscribe send an email to freeipa-users-leave@lists.fedorahosted.org Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedorahosted.org/archives/list/freeipa-users@lists.fedorahoste...
On 20.01.20 16:17, Florence Blanc-Renaud wrote:
But if you are doing a brand new deployment, what would be the rationale for using single-label domain?
It would just have been a convenience thing. Entering someservice.lan is a little shorter than someservice.ipa.lan. I can live with your decision...
When I was setting up IPA I was not aware of how heavily DHCP is used here. Are there any best practices for such a scenario?
Cheers, Ronald
freeipa-users@lists.fedorahosted.org