-
Story
-
Resolution: Done-Errata
-
Major
-
rhel-9.0.0
-
sssd-2.11.0-1.el10
-
Important
-
rhel-idm-zta
-
ssg_idm
-
15
-
16
-
1
-
False
-
False
-
-
None
-
None
-
Pass
-
Automated
-
None
Goal
- As an administrator, I want to resolve users and groups from a trusted RHEL IdM domain on IdM-enrolled clients in my RHEL IdM domain.
- As an administrator, I want to be able to use users and groups from a trusted RHEL IdM domain to define HBAC and SUDO rules in my RHEL IdM domain.
Acceptance Criteria
- After a trust between two RHEL IdM domains is established, SSSD on IdM server should be able to resolve known users and groups from the trusted RHEL IdM domain
- After a trust between two RHEL IdM domains is established, SSSD on IdM client should be able to resolve known users and groups from the trusted RHEL IdM domain
- After a trust between two RHEL IdM domains is established, trusted users can login to the IdM systems in the trusting domain, subject to HBAC rules
- After a trust between two RHEL IdM domains is established, trusted users can be subjected to SUDO rules in the trusting domain
- blocks
-
RHEL-14757 [RFE] Add IPA-IPA trust support
-
- In Progress
-
- duplicates
-
RHEL-14753 Add IPA subdomain support to allow IPA-IPA trust
-
- Closed
-
- links to
-
RHBA-2025:150949
sssd update