4 ms·
> 1) An easy way to join a Windows domain. Red Hat's sssd already makes this trivial. You can join a Windows domain from the Fedora "first run wizard" or via a
by noinsight 8y ago
> 1) An easy way to join a Windows domain.
Red Hat's sssd already makes this trivial. You can join a Windows domain from the Fedora "first run wizard" or via a simple "realm join xyz.tld" command. It works pretty well mostly. You get AD integrated logins and SSH/sudo access and can use AD groups for access control just like normal groups. Kerberos SSO to Linux boxes works fine etc.
- slededit 8y agoAD is all about group policy, logins are merely table stakes. If you want to distribute firewall rules to every machine in your arg AD is the way to go. Ditto for forcing updates (or preventing them), and any other manner of mass configuration. Then there is also centralized logging and auditing. Linux has most of this in an ad-hoc fashion, but the key benefit comes from the centralization.