Red Hat Bugzilla – Bug 1301664
[RFE] FreeIPA-to-FreeIPA migration
Last modified: 2018-02-07 23:21:33 EST
This bug is created as a clone of upstream ticket:
Provide a tool to migrate from FreeIPA to FreeIPA.
Currently FreeIPA can migrate users and groups from a generic LDAP server, but if you already have an IPA deployment there is currently no mechanism to migrate FreeIPA-specific data such as SUDO rules, HBAC, automount, hosts, services, etc (these last two may not be possible as re-enrollment of the client is required).
In Fedora 18: "Fedora does not provide a simple rename command to facilitate the renaming of a FreeIPA host. Renaming a host in a FreeIPA domain involves deleting the entry in FreeIPA, uninstalling the client software, changing the hostname, and re-enrolling using the new name. Additionally, part of renaming hosts requires regenerating service principals."
So it would be nice if RedHat IDM team could create a feature for changing domain or rename IPA domain. With such feature, users would avoid the hassle of doing this: https://docs.fedoraproject.org/en-US/Fedora/18/html/FreeIPA_Guide/renaming-machines.html
This bugzilla is about IPA to IPA migration, i.e., migrating data from one IPA server to different one. It is unrelated to ipa client renames.
It is preferred to file a new upstream ticket for client renames https://fedorahosted.org/freeipa/newticket