kinit admin
suffix=$(ldapsearch -Q -LLL -s base|grep 'dn: '| cut -d ' ' -f2)
dc=$(hostname -f)
domain=$(hostname -d)
ldapadd -h $dc -D "cn=Directory Manager" -W <<EOF
dn: ou=test_repl,ou=$domain,cn=orgunits,cn=accounts,$suffix
objectClass: rbta-org-unit
ou: test_repl
displayName: test_repl
EOF
ipa user-add testuser --first="Test" --last="User" --random
ldapmodify -h $dc -D "cn=Directory Manager" -W <<EOF
dn: uid=testuser,cn=users,cn=accounts,$suffix
changetype: modify
replace: rbtadp
rbtadp: ou=test_repl,ou=$domain,cn=orgunits,cn=accounts,$suffix
-
replace: rbtaou
rbtaou: test_repl
EOF |