ipa-client-install doesn't setup sudo as service

Bug #1492226 reported by Marlin Cremers
6
This bug affects 1 person
Affects Status Importance Assigned to Milestone
freeipa (Ubuntu)
Fix Released
Medium
Unassigned

Bug Description

After the installation using ipa-client-install is done its not possible to use sudo as IPA user even though it has been allowed through the interface. Adding 'sudo' to the sssd services appears to solve this problem.

ProblemType: Bug
DistroRelease: Ubuntu 14.04
Package: freeipa-client 3.3.4-0ubuntu3.1
Uname: Linux 2.6.32-39-pve i686
ApportVersion: 2.14.1-0ubuntu3.12
Architecture: i386
Date: Fri Sep 4 15:25:42 2015
ProcEnviron:
 TERM=xterm
 PATH=(custom, no user)
SourcePackage: freeipa
UpgradeStatus: Upgraded to trusty on 2015-09-04 (0 days ago)

Revision history for this message
Marlin Cremers (marlinc) wrote :
Revision history for this message
Marlin Cremers (marlinc) wrote :

This is the state of the sssd.conf file after running ipa-client-install

Revision history for this message
Timo Aaltonen (tjaalton) wrote :

this is fixed in 4.1 and up

Changed in freeipa (Ubuntu):
importance: Undecided → Medium
status: New → Confirmed
Revision history for this message
Launchpad Janitor (janitor) wrote :

This bug was fixed in the package freeipa - 4.1.4-1

---------------
freeipa (4.1.4-1) experimental; urgency=medium

  * New upstream release. (LP: #1492226)
    - Refresh patches
    - platform-support.diff: Added NAMED_VAR_DIR.
    - fix-bind-conf.diff: Dropped, obsolete with above.
    - disable-dnssec-support.patch: Disable DNSSEC-support as we're
      missing the dependencies for now.
  * control: Add python-usb to build-depends and to python-freeipa
    depends.
  * control: Bump SSSD dependencies.
  * control: Add libsofthsm2-dev to build-depends and softhsm2 to server
    depends.
  * freeipa-{server,client}.install: Add new files.
  * control: Bump Depends on slapi-nis for CVE fixes.
  * control: Bump 389-ds-base, pki-ca depends.
  * control: Drop dogtag-pki-server-theme from server depends, it's not
    needed.
  * control: Server needs newer python-ldap, bump build-dep too.
  * control: Bump certmonger depends.
  * control: Bump python-nss depends.
  * freeipa-client: Add /etc/ipa/nssdb, rework /etc/pki/nssdb handling.
  * platform: Add DebianNamedService.
  * platform, disable-dnssec-support.patch: Fix named.conf template.
  * server.postinst: Run ipa-ldap-updater and ipa-upgradeconfig on
    postinst.
  * Revert DNSSEC changes to schema and ACI, makes upgrade tools fail.
  * server.postrm: Clean logs on purge and disable apache modules on
    remove/purge.

 -- Timo Aaltonen <email address hidden> Fri, 25 Sep 2015 14:07:40 +0300

Changed in freeipa (Ubuntu):
status: Confirmed → Fix Released
To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.