← All guides
FreeIPA
FreeIPA bundles LDAP, Kerberos, DNS, and a certificate authority into a single integrated identity management domain controller for Linux environments.
This guide is synthesized from FreeIPA's own official documentation, linked above — always cross-check exact package/version names there before running these commands on a production server, since distro and project versions move over time.
1Install the FreeIPA server package
dnf install freeipa-serverAdd 'dnf install freeipa-server-dns' as well if you want FreeIPA to also run integrated DNS.
2Run the interactive server installer
ipa-server-installRequires a static hostname/working DNS resolution beforehand and at least ~1.2GB RAM (2GB recommended). See 'man ipa-server-install' for non-interactive flags.
3Open firewall ports
firewall-cmd --add-service=freeipa-ldap --add-service=freeipa-ldapsfirewall-cmd --add-service=freeipa-ldap --add-service=freeipa-ldaps --permanent