Uploaded image for project: 'RHEL'
  1. RHEL
  2. RHEL-19133

[ansible-freeipa] ipadnszone: Add support for per-zone privilege delegation

    • sst_idm_ipa
    • ssg_idm
    • 24
    • 25
    • 1
    • QE ack, Dev ack
    • False
    • Hide

      None

      Show
      None
    • Yes
    • 2024-Q1-Alpha-S4
    • Enhancement
    • Hide
      .The delegation of DNS zone management enabled in `ansible-freeipa`

      You can now use the `dnszone` `ansible-freeipa` module to delegate DNS zone management. Use the `permission` or `managedby` variable of the `dnszone` module to set a per-zone access delegation permission.
      Show
      .The delegation of DNS zone management enabled in `ansible-freeipa` You can now use the `dnszone` `ansible-freeipa` module to delegate DNS zone management. Use the `permission` or `managedby` variable of the `dnszone` module to set a per-zone access delegation permission.
    • Done

      IPA DNS Zones management can be delegated by adding a "Manage DNS zone" permission. The CLI commands that manage these permissions are dnszone-add-delegation and dnszone-remove-delegation.

      The ansible-freeipa module ipadnszone did not have this capability, and it now support dnszone per-zone management delegation by setting the module parameter 'permission'. If set to 'true' the permission will be assigned to the zone, if set to false the permission will be removed.

            rjeffman@redhat.com Rafael Jeffman
            twoerner Thomas Woerner
            Thomas Woerner Thomas Woerner
            Varun Mylaraiah Varun Mylaraiah
            Filip Hanzelka Filip Hanzelka
            Votes:
            0 Vote for this issue
            Watchers:
            9 Start watching this issue

              Created:
              Updated:
              Resolved: