Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

   - Locate the admin username in Morpheus' Cypher → secret/ipaadmin_username
   - Locate the password in Morpheus' Cypher → password/ipaadmin



Image RemovedImage Added



Then SSH into your LDAP instance with your admin account:

ssh -J admin@ssh-proxy-ip admin@ldap-ip

...


Users and Groups

Check user info

...

   - Locate the admin username in Morpheus' Cypher → secret/ipaadmin_username
   - Locate the password in Morpheus' Cypher → password/ipaadmin


Image RemovedImage Added


Then SSH into your LDAP instance with your admin account:

...

firefox http://ldap.YOURDOMAIN

Image RemovedImage Added


Once Firefox has launched, log in with the admin account and head over to Policy.

Create two sudo commands as show shown in the screenshot below. 


Image RemovedImage Added


Then click Sudo again and create a sudo rule called allow_all:


Image RemovedImage Added


Click the command itself and check the boxes as show shown below:

Image RemovedImage Added



Image RemovedImage Added


Update the global policy for password expiration (default is 90 days which is a tad bit short)if required :

Image RemovedImage Added


After updating the password policy, reset the admin password so it adheres to the new policy and not the default 90 day one .

Update the default shell for users to bash instead of sh:

Image RemovedImage Added


This guide is designed to help you efficiently manage LDAP tasks using both CLI and UI interfaces, ensuring a smooth and secure administration process.