freeipa/ipa-client
Rob Crittenden 3ff06c498b Configure sssd and certmonger in ipa-client-install
This does a number of things under the hood:

- Use authconfig to enable sssd in nss and pam
- Configure /etc/sssd/sssd.conf to use our IPA provider
- Enable the certmonger process and request a server cert
- join the IPA domain and retrieve a principal. The clinet machine
  *must* exist in IPA to be able to do a join.
- And then undo all this on uninstall
2010-02-03 15:41:02 -05:00
..
firefox Set the license uniformly to GPLv2 only. 2008-02-04 15:15:52 -05:00
ipa-install Configure sssd and certmonger in ipa-client-install 2010-02-03 15:41:02 -05:00
ipaclient Better LDAP error handling in ipa-client-install 2009-12-01 09:52:14 -07:00
man A utility for removing principals from a keytab. 2009-12-04 16:29:09 -05:00
AUTHORS Fix build from autoconf patch import. 0001-01-01 00:00:00 +00:00
config.c Enrollment for a host in an IPA domain 2009-09-24 17:45:49 -06:00
configure.ac Enrollment for a host in an IPA domain 2009-09-24 17:45:49 -06:00
ipa-client.spec.in Fix versioning for configure.ac and ipa-python/setup.py 2008-08-11 18:31:05 -04:00
ipa-getkeytab.c Enrollment for a host in an IPA domain 2009-09-24 17:45:49 -06:00
ipa-join.c Require that the hostname we are joining as is fully-qualified 2010-01-26 10:41:56 -05:00
ipa-rmkeytab.c Remove duplicated code 2010-01-26 10:39:30 -05:00
Makefile.am A utility for removing principals from a keytab. 2009-12-04 16:29:09 -05:00
NEWS Fix build from autoconf patch import. 0001-01-01 00:00:00 +00:00
README Add a copy of the LICENSE and populate some README's 2008-01-23 10:30:18 -05:00
version.m4.in Fix versioning for configure.ac and ipa-python/setup.py 2008-08-11 18:31:05 -04:00

Code to be installed on any client that wants to be in an IPA domain.

Mostly consists of a tool for Linux systems that will help configure the
client so it will work properly in a kerberized environment.

It also includes several ways to configure Firefox to do single sign-on.

The two methods on the client side are:

1. globalsetup.sh. This modifies the global Firefox installation so that
   any profiles created will be pre-configured.

2. usersetup.sh. This will update a user's existing profile.

The downside of #1 is that an rpm -V will return a failure. It will also
need to be run with every update of Firefox.

One a profile contains the proper preferences it will be unaffected by
upgrades to Firefox. 

The downside of #2 is that every user would need to run this each time they
create a new profile.

There is a third, server-side method. See ipa-server/README for details.