FreeIPA Identity Management

Azure Security 1 variation

FreeIPA, an open source identity management suite, building its own directory, Kerberos realm and certificate authority on first boot.

Base
Hardened build
minimal ports, security patches applied at build time
Access
Unique credentials
generated on first boot, readable only by root
Verified
Boots working
services pass a health gate before release
Support
24/7, 365 days
by email and live chat, 24 hour response SLA

Variations

This product is available in the build below. Open it for the operating system, cloud and version detail, or read its deployment guide.

ProductCloudOperating systemVersion
FreeIPA Identity Management on AlmaLinux 9 Azure AlmaLinux 9 Standard View · Guide

Overview

FreeIPA combines an LDAP directory, a Kerberos key distribution centre and a certificate authority into a single managed identity domain. Organisations use it to give Linux fleets central accounts, single sign on, host based access control, centrally managed sudo rules and certificates that are issued and renewed automatically.

Why the cloudimg image

cloudimg ships FreeIPA hardened and fully patched, with nothing baked into the image: the realm, the certificate authority, the Kerberos master key and both administrator passwords are generated on your own instance at first boot, so no two deployments share a secret. Passwords never reach a command line or the system log, the host firewall opens only the ports an identity domain needs, and the image is supported 24/7.

Common uses

  • Central Linux identity and single sign on
  • Certificate issuance and renewal
  • Host based access control and sudo policy