Bug 1301582

Summary: [RFE] ipa-client-install: need an option to completely remove client from idm server.
Product: Red Hat Enterprise Linux 7 Reporter: German Parente <gparente>
Component: ipaAssignee: Florence Blanc-Renaud <frenaud>
Status: CLOSED DEFERRED QA Contact: Namita Soman <nsoman>
Severity: unspecified Docs Contact:
Priority: unspecified    
Version: 7.2CC: anazmy, mkosek, nsuryawa, pasik, pcech, pvoborni, rcritten
Target Milestone: rcKeywords: FutureFeature
Target Release: ---   
Hardware: Unspecified   
OS: Unspecified   
Whiteboard:
Fixed In Version: Doc Type: Enhancement
Doc Text:
Story Points: ---
Clone Of: Environment:
Last Closed: 2019-12-09 20:10:38 UTC Type: Bug
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Bug Depends On:    
Bug Blocks: 1547051    

Description German Parente 2016-01-25 12:43:42 UTC
Description of problem:

We can see in documentation:

https://access.redhat.com/documentation/en-US/Red_Hat_Enterprise_Linux/7/html/Linux_Domain_Identity_Authentication_and_Policy_Guide/trouble.html#uninstalling-clients

" The only way to uninstall a client completely is to use ipa-client-install --uninstall. "

It could be interesting, at uninstall, to have an option to do the exact symetric operation than ipa-client-install.

Today, the ipa-client-install command creates entries on server.

And the --uninstall is not deleting them. We need to do 

ipa-client-install --uninstall
ipa host-del <client machine>

to invert the client install. An option "--clean-all" or "--server-clean" could delete also host entry + dns entry if possible ?



Version-Release number of selected component (if applicable):

ipa-client-4.2.0-15.el7_2.3.x86_64
ipa-server-4.2.0-15.el7_2.3.x86_64

Comment 2 Petr Vobornik 2016-02-15 19:42:01 UTC
Upstream ticket:
https://fedorahosted.org/freeipa/ticket/5676

Comment 4 Petr Vobornik 2016-03-30 13:52:54 UTC
Summary of internal discussion
"""
So can we summarize and agree that:
a) It is a good idea to have an option to clean DNS record on the host-del
b) Since there are already expectations about system behavior this
option would not be enabled by default.
"""

It is more related to bug 1301586, but here the context is that cleanup should not be a default behavior.

Comment 12 Petr Čech 2019-12-09 20:10:38 UTC
Once the upstream community implements this feature it will be pulled into a corresponding Red Hat Enterprise Linux release following the corresponding schedules.
From now on this issue will be tracked in the community issue tracker only.
Closing this BZ.