Difference between revisions of "Network Overview"

From Spark Makerspace
Jump to navigation Jump to search
Line 14: Line 14:
 
=== How to Create a New User ===
 
=== How to Create a New User ===
 
Point your browser to [https://freeipa.spark.spork https://freeipa.spark.spork] while on the Spark network and login with administrator credentials.
 
Point your browser to [https://freeipa.spark.spork https://freeipa.spark.spork] while on the Spark network and login with administrator credentials.
[[image:FreeIPA login.png|300px|thumb|FreeIPA Login Page]]
+
[[image:FreeIPA login.png|300p|thumb|FreeIPA Login Page]]
 +
Once logged in, on the '''Identity > Users''' tab, click the '''Add''' button on the primary section. Enter the user's information. Spark uses a username format of first initial + last name. If this username is already in use, use full first name instead of first initial.
 +
 
 +
== How to enroll a new Ubuntu machine ==
 +
1. Set hostname
 +
sudo hostnamectl set-hostname new-host.spark.spork
 +
2. Install freeipa-client package
 +
sudo apt install -y freeipa-client
 +
3. Edit /etc/hosts
 +
<nowiki>$ sudo vim /etc/hosts
 +
# Add FreeIPA Server IP and hostname
 +
10.11.12.156 freeipa.spark.spork freeipa</nowiki>
 +
4. Register host
 +
<nowiki># ipa-client-install --hostname=`hostname -f` \
 +
--mkhomedir \
 +
--server=freeipa.spark.spork \
 +
--domain spark.spork \
 +
--realm SPARK.SPORK</nowiki>
 +
You can proceed with fixed values and no DNS discovery. It's also fine to not configure NTP.
 +
 
 +
5. Enable mkhomedir.
 +
<nowiki>sudo bash -c "cat > /usr/share/pam-configs/mkhomedir" <<EOF
 +
Name: activate mkhomedir
 +
Default: yes
 +
Priority: 900
 +
Session-Type: Additional
 +
Session:
 +
required pam_mkhomedir.so umask=0022 skel=/etc/skel
 +
EOF</nowiki>
 +
Then run
 +
$ sudo pam-auth-update
 +
Ensure that "activate mkhomedir" is checked and hit enter when prompted.

Revision as of 01:52, 28 November 2021

Spark Makerspace Network Overview

This page is intended to give you an overview of the network at Spark Makerspace.

Network Graph

Latest Spark Network Diagram

Editable Network Graph on yEd Live

Domain

Spark is using FreeIPA to manage host and user identities. While it's not a replacement for a Microsoft Active Directory domain controller, it get us close for the low price of free!

How to Create a New User

Point your browser to https://freeipa.spark.spork while on the Spark network and login with administrator credentials.

FreeIPA Login Page

Once logged in, on the Identity > Users tab, click the Add button on the primary section. Enter the user's information. Spark uses a username format of first initial + last name. If this username is already in use, use full first name instead of first initial.

How to enroll a new Ubuntu machine

1. Set hostname

sudo hostnamectl set-hostname new-host.spark.spork

2. Install freeipa-client package

sudo apt install -y freeipa-client

3. Edit /etc/hosts

$ sudo vim /etc/hosts
# Add FreeIPA Server IP and hostname
10.11.12.156 freeipa.spark.spork freeipa

4. Register host

# ipa-client-install --hostname=`hostname -f` \
--mkhomedir \
--server=freeipa.spark.spork \
--domain spark.spork \
--realm SPARK.SPORK

You can proceed with fixed values and no DNS discovery. It's also fine to not configure NTP.

5. Enable mkhomedir.

sudo bash -c "cat > /usr/share/pam-configs/mkhomedir" <<EOF
Name: activate mkhomedir
Default: yes
Priority: 900
Session-Type: Additional
Session:
required pam_mkhomedir.so umask=0022 skel=/etc/skel
EOF

Then run

$ sudo pam-auth-update

Ensure that "activate mkhomedir" is checked and hit enter when prompted.