MirrorNest
← All guides

FreeIPA

FreeIPA bundles LDAP, Kerberos, DNS, and a certificate authority into a single integrated identity management domain controller for Linux environments.

Target: Fedora / RHEL / CentOS StreamIdentity ManagementOfficial homepage ↗Official docs ↗
This guide is synthesized from FreeIPA's own official documentation, linked above — always cross-check exact package/version names there before running these commands on a production server, since distro and project versions move over time.
  1. 1Install the FreeIPA server package

    dnf install freeipa-server

    Add 'dnf install freeipa-server-dns' as well if you want FreeIPA to also run integrated DNS.

  2. 2Run the interactive server installer

    ipa-server-install

    Requires a static hostname/working DNS resolution beforehand and at least ~1.2GB RAM (2GB recommended). See 'man ipa-server-install' for non-interactive flags.

  3. 3Open firewall ports

    firewall-cmd --add-service=freeipa-ldap --add-service=freeipa-ldaps
    firewall-cmd --add-service=freeipa-ldap --add-service=freeipa-ldaps --permanent