Recent removal of global read-only ACI affects current self-service page.
Now it displays error dialog with two errors:
* None: password policy not found
* an internal error has occurred
They are results of:
* pwpolicy-show --user=username
* krbtpolicy-show username
The second one is an obvious bug:
The question is whether normal user should see this information or not.
If yes, we should fix default permissions. If not, we should fix Web UI.
Freeipa-devel mailing list