Thank you for your reply Alexander,
I understand now that FreeIPA does make information to all users available to 
all Clients. 
That said, I disagree this is about security through obscurity in my case. Some 
(personal) information
should not be available publicly and  any client having access to all user 
information does not work for this.

But I don't see this as a shortcoming of FreeIPA but rather as a different 
problem domain than what FreeIPA wants to solve.
FreeIPA is an identity management system and not a general user database. It 
makes sense that members of an organization
in an identity management system are not secret. 

Best regards,
Finn
-- 
_______________________________________________
FreeIPA-users mailing list -- [email protected]
To unsubscribe send an email to [email protected]
Fedora Code of Conduct: 
https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: 
https://lists.fedorahosted.org/archives/list/[email protected]
Do not reply to spam, report it: 
https://pagure.io/fedora-infrastructure/new_issue

Reply via email to