I managed to get it working by uncommenting the line "simple_allow_users" inside sssd.conf on the client. Also as far as i can find the default allow_all rule should allow all users to login to all clients. (I have not configured any fine grained control yet)
I found the allow_all rule that is enabled. Mind you it is only on fedora I seem to have this issue with. Ubuntu and opensuse users can login just fine.
Is this something you set on the client it self or on the freeipa server for the host?. I never set such a option for any client though. i did enroll the other clients with the "freeipa-client-install" command and tried fedora with the initial setup. so their might be a difference in it how to enrolls?
I in fact run a AD domain controller *and *a rhel IDM controller. For me other then it is fun to play with, makes it a load more simple to manage the user accounts of my famalie. Also auto mounting network shares and setting a few policys for updates and security is great to from a central location. having SSO for many if my services also makes it more easy to use for the fam. The rhel IDM controller I use to manage a few user accounts. I also use it to manage the ssh keys and set sudo rules on all my servers.
shouldnt run
imo is wrong. a PC from 2006 is more then capable of running windows 11 without issue. maiby need a bit of a ram upgrade but for some light work is fine. getting all the latest security updates is also a good thing with windows. the choice should be made by the end user if their device is powerful enough to run win11.
If you think about it. Rhel already killed of the use of older CPUs by requiring x86-64-v2 for rhel 9 and up. If you got x86-64-v1 you get a kernel panic and can not even boot the system. Dont get me wrong I love linux and use it anywhere I can.
I agree that the web UI looks a bit outdated. But it is more then functional and imo not that complicated. Personally I use the container version with podman so idk about the windows version.
And now we wait for the ban hammer of GitHub. Looking at all these issues being opened.