#5394 [RFE] Support different GIDs for the same group depending on context
Closed: Invalid Opened by dpal.

User Story 1:

As an administrator I migrated from different NIS environments to a single IdM environment. I want to flatten my user and group namespaces but it takes years to fine all the UIDs and GIDs on different filers and make things correct. While I am definitely working towards flat environment I need an interim state where I can create groups that have same name but different GIDs and make sure that clients from that environment see one of the groups with a specific GID. That would allow me to mimic my old NIS server for the clients. This approach allows for a slow transition towards IPA technologies.

User Story 2:

As an administrator I want to have different environments dev-test-prod. I want to be able to use same group names across the environments but I want to make sure they have different GUIDs in different environments to better define access control for those environments. It is similar to the request to use UIDs or SSH keys for users in different environments.


This RFE should be already covered by group based ID Views existing in FreeIPA 4.1.0:

https://access.redhat.com/documentation/en-US/Red_Hat_Enterprise_Linux/7/html/Windows_Integration_Guide/id-views.html

Metadata Update from @dpal:
- Issue assigned to someone
- Issue set to the milestone: FreeIPA 4.2.3

Metadata