Uploaded image for project: 'RHEL'
  1. RHEL
  2. RHEL-19133

[ansible-freeipa] ipadnszone: Add support for per-zone privilege delegation

    • ansible-freeipa-1.12.1-1.el8
    • None
    • None
    • 1
    • rhel-sst-idm-ipa
    • ssg_idm
    • 24
    • 25
    • 1
    • QE ack, Dev ack
    • False
    • Hide

      None

      Show
      None
    • Yes
    • 2024-Q1-Alpha-S4
    • Enhancement
    • Hide
      .The delegation of DNS zone management enabled in `ansible-freeipa`

      You can now use the `dnszone` `ansible-freeipa` module to delegate DNS zone management. Use the `permission` or `managedby` variable of the `dnszone` module to set a per-zone access delegation permission.
      Show
      .The delegation of DNS zone management enabled in `ansible-freeipa` You can now use the `dnszone` `ansible-freeipa` module to delegate DNS zone management. Use the `permission` or `managedby` variable of the `dnszone` module to set a per-zone access delegation permission.
    • Done
    • None

      IPA DNS Zones management can be delegated by adding a "Manage DNS zone" permission. The CLI commands that manage these permissions are dnszone-add-delegation and dnszone-remove-delegation.

      The ansible-freeipa module ipadnszone did not have this capability, and it now support dnszone per-zone management delegation by setting the module parameter 'permission'. If set to 'true' the permission will be assigned to the zone, if set to false the permission will be removed.

              rjeffman@redhat.com Rafael Jeffman
              twoerner Thomas Woerner
              Thomas Woerner Thomas Woerner
              Varun Mylaraiah Varun Mylaraiah
              Filip Hanzelka Filip Hanzelka
              Votes:
              0 Vote for this issue
              Watchers:
              9 Start watching this issue

                Created:
                Updated:
                Resolved: