Is there an ldap attribute in IdM/IPA that is to be used to describe a role to be used by a automember rule?
Issue
- I am looking for a attribute that can be used to store role information that eventually will enter the IdM system from a external IAM system
- I want to use that information in automember rules
- So far I have seen a departmentNumber and a employeeType from the inetOrgPerson objectclass, but I'd rather use something that is a standard (and perhaps with role in the name of the) attribute
Environment
- Red Hat Enterprise Linux (RHEL) 7.0
- ipa-server (IPA) 3.3
Subscriber exclusive content
A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.