This is a tracking bug for Change: Transitive Trusts with Active Directory support for FreeIPA For more details, see: http://fedoraproject.org//wiki/Changes/IPAv3TransitiveTrusts FreeIPA will support transitive trusts with Active Directory
I'm on vacation and will only be able to work fully on the feature starting September.
Alexander, what's the current state of this Change?
Couple bugs identified and being fixed on FreeIPA and SSSD sides. Patches for FreeIPA side are on review on the upstream mailing list. We are scoping out Global Catalog parts (i.e. log-in as IPA user to Active Directory machines) due to time shortage before F20 release. Transitive trusts for complex AD forests accessing IPA resources will be supported.
This message is a reminder that Fedora 20 Accepted Changes 100% Completed Deadline is on 2013-10-15 [1]. All Accepted Changes has to be code complete and ready to be validated in the Beta release (optionally by Fedora QA). Required bug state at this point is ON_QA. As for several System Wide Changes, Beta Change Deadline is a point of contingency plan, all incomplete Changes will be reported to FESCo for 2013-10-16 meeting. In case of any questions, don't hesitate to ask Wrangler (jreznik). [1] https://fedoraproject.org/wiki/Releases/20/Schedule
Since FreeIPA 3.3.2 was released last week and is now available in Fedora 20, moving the bug to ON_QA status. As stated in the comment 3, feature was reduced to "Access to FreeIPA resources from multi-domain Active Directory forests".
Closing this bug as this Change was delivered in Fedora 20 release. Please, reopen in case of any issues you encounter regarding this Change completion.