ipa-client-install doesn't setup sudo as service

Bug #1492226 reported by Marlin Cremers on 2015-09-04
6
This bug affects 1 person
Affects Status Importance Assigned to Milestone
freeipa (Ubuntu)
Medium
Unassigned

Bug Description

After the installation using ipa-client-install is done its not possible to use sudo as IPA user even though it has been allowed through the interface. Adding 'sudo' to the sssd services appears to solve this problem.

ProblemType: Bug
DistroRelease: Ubuntu 14.04
Package: freeipa-client 3.3.4-0ubuntu3.1
Uname: Linux 2.6.32-39-pve i686
ApportVersion: 2.14.1-0ubuntu3.12
Architecture: i386
Date: Fri Sep 4 15:25:42 2015
ProcEnviron:
 TERM=xterm
 PATH=(custom, no user)
SourcePackage: freeipa
UpgradeStatus: Upgraded to trusty on 2015-09-04 (0 days ago)

Marlin Cremers (marlinc) wrote :
Marlin Cremers (marlinc) wrote :

This is the state of the sssd.conf file after running ipa-client-install

Timo Aaltonen (tjaalton) wrote :

this is fixed in 4.1 and up

Changed in freeipa (Ubuntu):
importance: Undecided → Medium
status: New → Confirmed
Launchpad Janitor (janitor) wrote :

This bug was fixed in the package freeipa - 4.1.4-1

---------------
freeipa (4.1.4-1) experimental; urgency=medium

  * New upstream release. (LP: #1492226)
    - Refresh patches
    - platform-support.diff: Added NAMED_VAR_DIR.
    - fix-bind-conf.diff: Dropped, obsolete with above.
    - disable-dnssec-support.patch: Disable DNSSEC-support as we're
      missing the dependencies for now.
  * control: Add python-usb to build-depends and to python-freeipa
    depends.
  * control: Bump SSSD dependencies.
  * control: Add libsofthsm2-dev to build-depends and softhsm2 to server
    depends.
  * freeipa-{server,client}.install: Add new files.
  * control: Bump Depends on slapi-nis for CVE fixes.
  * control: Bump 389-ds-base, pki-ca depends.
  * control: Drop dogtag-pki-server-theme from server depends, it's not
    needed.
  * control: Server needs newer python-ldap, bump build-dep too.
  * control: Bump certmonger depends.
  * control: Bump python-nss depends.
  * freeipa-client: Add /etc/ipa/nssdb, rework /etc/pki/nssdb handling.
  * platform: Add DebianNamedService.
  * platform, disable-dnssec-support.patch: Fix named.conf template.
  * server.postinst: Run ipa-ldap-updater and ipa-upgradeconfig on
    postinst.
  * Revert DNSSEC changes to schema and ACI, makes upgrade tools fail.
  * server.postrm: Clean logs on purge and disable apache modules on
    remove/purge.

 -- Timo Aaltonen <email address hidden> Fri, 25 Sep 2015 14:07:40 +0300

Changed in freeipa (Ubuntu):
status: Confirmed → Fix Released
To post a comment you must log in.
This report contains Public information  Edit
Everyone can see this information.

Other bug subscribers