Professional Documents
Culture Documents
Dmitri Pal
Sr. Engineering Manager, Red Hat Inc.
Robert Crittenden
Sr. Engineer, Red Hat Inc.
05/06/11
Agenda
What is IPA?
Main values
Architecture
Features
Direction
Roadmap
Resources
What is IPA?
DNS
KDC
LDAP
CLI/GUI
Admin
Why IPA?
Features
Identity management:
Integrated identities
Manageability:
Features (Continued)
Advanced features:
Centrally-managed SUDO
Features (Continued)
Replication:
IPA Core
NTP
CA
Kerberos
KDC
Directory
Server
DNS
Users, Groups,
Netgroups, HBAC
Managed host
(client)
SSSD
Configures
Name lookups
and service
discovery
Cert tracking &
provisioning
ipa-client
Certmonger
Configures
nss_ldap
Other maps
Enrollment & un-enrollment
Management Station
Management
framework
CLI
Management
WEBUI
Browser
IPA Core
NTP
CA
Kerberos
KDC
Directory
Server
DNS
Users, Groups,
Netgroups, HBAC
Managed host
(client)
SSSD
Configures
Name lookups
and service
discovery
Cert tracking &
provisioning
ipa-client
Configures
Certmonger
nss_ldap
Other maps
Enrollment & un-enrollment
Management Station
Management
framework
CLI
Management
WEBUI
Browser
IPA Core
NTP
CA
Kerberos
KDC
Directory
Server
DNS
Users, Groups,
Netgroups, HBAC
Managed host
(client)
SSSD
Configures
Name lookups
and service
discovery
Cert tracking &
provisioning
ipa-client
Configures
Certmonger
nss_ldap
Other maps
Enrollment & un-enrollment
Management Station
Management
framework
CLI
Management
WEBUI
Browser
IPA Core
NTP
CA
Kerberos
KDC
Directory
Server
DNS
Users, Groups,
Netgroups, HBAC
Managed host
(client)
SSSD
Configures
Name lookups
and service
discovery
Cert tracking &
provisioning
ipa-client
Configures
Certmonger
nss_ldap
Other maps
Enrollment & un-enrollment
Management Station
Management
framework
CLI
Management
WEBUI
Browser
Client Configurations
SSSD
Non-SSSD
IPA Core
NTP
CA
Kerberos
KDC
Directory
Server
DNS
Users, Groups,
Netgroups, HBAC
Managed host
(client)
SSSD
Configures
Name lookups
and service
discovery
Cert tracking &
provisioning
ipa-client
Configures
Certmonger
nss_ldap
Other maps
Enrollment & un-enrollment
Management Station
Management
framework
CLI
Management
WEBUI
Browser
IPA Core
NTP
CA
Kerberos
KDC
Directory
Server
DNS
Users, Groups,
Netgroups, HBAC
Managed host
(client)
SSSD
Configures
Name lookups
and service
discovery
Cert tracking &
provisioning
ipa-client
Configures
Certmonger
nss_ldap
Other maps
Enrollment & un-enrollment
Management Station
Management
framework
CLI
Management
WEBUI
Browser
IPA Core
NTP
CA
Kerberos
KDC
Directory
Server
DNS
Users, Groups,
Netgroups, HBAC
Managed host
(client)
SSSD
Configures
Name lookups
and service
discovery
Cert tracking &
provisioning
ipa-client
Configures
Certmonger
nss_ldap
Other maps
Enrollment & un-enrollment
Management Station
Management
framework
CLI
Management
WEBUI
Browser
IPA Core
NTP
CA
Kerberos
KDC
Directory
Server
DNS
Users, Groups,
Netgroups, HBAC
Managed host
(client)
SSSD
Configures
Name lookups
and service
discovery
Cert tracking &
provisioning
ipa-client
Configures
Certmonger
nss_ldap
Other maps
Enrollment & un-enrollment
Management Station
Management
framework
CLI
Management
WEBUI
Browser
IPA Core
NTP
CA
Kerberos
KDC
Directory
Server
DNS
Users, Groups,
Netgroups, HBAC
Managed host
(client)
SSSD
Configures
Name lookups
and service
discovery
Cert tracking &
provisioning
ipa-client
Configures
Certmonger
nss_ldap
Other maps
Enrollment & un-enrollment
Management Station
Management
framework
CLI
Management
WEBUI
Browser
IPA Core
NTP
CA
Kerberos
KDC
Directory
Server
DNS
Users, Groups,
Netgroups, HBAC
Managed host
(client)
SSSD
Configures
Name lookups
and service
discovery
Cert tracking &
provisioning
ipa-client
Configures
Certmonger
nss_ldap
Other maps
Enrollment & un-enrollment
Management Station
Management
framework
CLI
Management
WEBUI
Browser
IPA Core
NTP
CA
Kerberos
KDC
Directory
Server
DNS
Users, Groups,
Netgroups, HBAC
Managed host
(client)
SSSD
Configures
Name lookups
and service
discovery
Cert tracking &
provisioning
ipa-client
Configures
Certmonger
nss_ldap
Other maps
Enrollment & un-enrollment
Management Station
Management
framework
CLI
Management
WEBUI
Browser
Direction
UI improvements
Policies as needed
RADIUS
Roadmap
Resources
Code: http://git.fedorahosted.org/git/?p=freeipa.git
SSSD: https://fedorahosted.org/sssd/
Certmonger: https://fedorahosted.org/certmonger/
Mailing lists:
freeipa-users@redhat.com
freeipa-devel@redhat.com
freeipa-interest@redhat.com
Questions?