Thank you for your reply Alexander, I understand now that FreeIPA does make information to all users available to all Clients. That said, I disagree this is about security through obscurity in my case. Some (personal) information should not be available publicly and any client having access to all user information does not work for this.
But I don't see this as a shortcoming of FreeIPA but rather as a different problem domain than what FreeIPA wants to solve. FreeIPA is an identity management system and not a general user database. It makes sense that members of an organization in an identity management system are not secret. Best regards, Finn -- _______________________________________________ FreeIPA-users mailing list -- [email protected] To unsubscribe send an email to [email protected] Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedorahosted.org/archives/list/[email protected] Do not reply to spam, report it: https://pagure.io/fedora-infrastructure/new_issue
