Andrew,

Are you using SELinux?

On Aug 30, 2018, at 2:39 PM, Andrew Meyer via FreeIPA-users 
<freeipa-users@lists.fedorahosted.org<mailto:freeipa-users@lists.fedorahosted.org>>
 wrote:

Has anyone setup the self service password module?
I have it setup and working on tomcat on a seperate server.

If so I have a few questions:


1) did you install this on the freeipa main server or another server?

2)  Did you have allow anonymous searching for pwm?  I have a user account 
setup for this and I was able to test auth but test account doesn't want to 
work.  I'm not sure why.  I'm still looking through the logs.

I have been following this user's suggestions on getting this working:
PWM setup for FreeIPA (with LDAP and MySQL userdata 
store)<https://gist.github.com/PowerWagon/d794a1233d7943f1614d2ae5223e678a>

<https://gist.github.com/PowerWagon/d794a1233d7943f1614d2ae5223e678a>




[https://s.yimg.com/nq/storm/assets/enhancrV2/23/logos/github.png]
PWM setup for FreeIPA (with LDAP and MySQL userdata store)
PWM setup for FreeIPA (with LDAP and MySQL userdata store) - 1. PWM-FreeIPA.txt




Obviously not using the MySQL setup but FreeIPA (99pwm.ldif and PWMacis.ldif).

I am running the 99pwm on a test environment and its not allowing me to add the 
99pwm.ldif file.  The dirsrv service complains that it can't read the file.  
But the permissions are correct.

[root@freeipa02-dev schema]# pwd
/etc/dirsrv/slapd-EXAMPLE-LOCAL/schema
[root@freeipa02-dev schema]# ls -la | grep -i 99pwm
-rw-r-----. 1 dirsrv dirsrv   2036 Aug 30 12:57 99pwm.ldif
[root@freeipa02-dev schema]#
_______________________________________________
FreeIPA-users mailing list -- 
freeipa-users@lists.fedorahosted.org<mailto:freeipa-users@lists.fedorahosted.org>
To unsubscribe send an email to 
freeipa-users-le...@lists.fedorahosted.org<mailto:freeipa-users-le...@lists.fedorahosted.org>
Fedora Code of Conduct: https://getfedora.org/code-of-conduct.html
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: 
https://lists.fedorahosted.org/archives/list/freeipa-users@lists.fedorahosted.org


________________________________

LEGAL DISCLAIMER: M.C. Dean, Inc. and its subsidiaries considers this e-mail 
and any files transmitted with it to be protected, proprietary or privileged 
information intended solely for the use of the named recipient(s). Any 
disclosure of this material or the information contained herein, in whole or in 
part, to anyone outside of the intended recipient or affiliates is strictly 
prohibited. M. C. Dean, Inc. accepts no liability for the content of this 
e-mail or for the consequences of any actions taken on the basis of the 
information contained in it, unless that information is subsequently confirmed 
in writing. Employees of M.C. Dean, Inc. are instructed not to infringe on any 
rights of the recipient; any such communication violates company policy. If you 
are not the intended recipient, any disclosure, copying, distribution, or 
action taken or omitted in reliance on this information is strictly prohibited 
by M.C. Dean, Inc.; please notify the sender immediately by return e-mail, 
delete this communication and destroy all copies.
_______________________________________________
FreeIPA-users mailing list -- freeipa-users@lists.fedorahosted.org
To unsubscribe send an email to freeipa-users-le...@lists.fedorahosted.org
Fedora Code of Conduct: https://getfedora.org/code-of-conduct.html
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: 
https://lists.fedorahosted.org/archives/list/freeipa-users@lists.fedorahosted.org

Reply via email to