第 43 章 Managing host groups using the IdM CLI
Learn more about how to manage host groups and their members on the command line (CLI) by using the following operations:
- Viewing host groups and their members
- Creating host groups
- Deleting host groups
- Adding host group members
- Removing host group members
- Adding host group member managers
- Removing host group member managers
43.1. Host groups in IdM 复制链接链接已复制到粘贴板!
复制链接链接已复制到粘贴板!
IdM host groups can be used to centralize control over important management tasks, particularly access control.
- Definition of host groups
- A host group is an entity that contains a set of IdM hosts with common access control rules and other characteristics. For example, you can define host groups based on company departments, physical locations, or access control requirements.
A host group in IdM can include:
- IdM servers and clients
Other IdM host groups
- Host groups created by default
-
By default, the IdM server creates the host group
ipaserversfor all IdM server hosts. - Direct and indirect group members
- Group attributes in IdM apply to both direct and indirect members: when host group B is a member of host group A, all members of host group B are considered indirect members of host group A.