what does "sudo -l -U <username>" show? My experience flushing sss_cache has rarely been successful. When I experience issues with user sudo permissions, I restart sssd. Fixes it every time.
- grant On Jun 17, 2022, at 00:53, Alessandro Fort via FreeIPA-users <[email protected]<mailto:[email protected]>> wrote: CAUTION: This email originated outside Company3-Method. Do not click links or open attachments unless you recognize the sender and know the content is safe. Hi, I have a local user (let's call it local) that has NOPASSWD set in /etc/sudoers. When I apply an ID view to change my FreeIPA user's (let's call it domain) username, UID, GID, shell and home to that of local, whenever I try to use sudo after logging in with either domain or local, domain's sudo rules apply and I am asked for a password. Is this expected behaviour or a quirk of my configuration/policies? I would expect that when logging in using domain, FreeIPA sudo rules are applied, while if I log in using local I'd get the old /etc/sudoers policy. Is this possible? Thank you! _______________________________________________ FreeIPA-users mailing list -- [email protected]<mailto:[email protected]> To unsubscribe send an email to [email protected]<mailto:[email protected]> Fedora Code of Conduct: https://nam10.safelinks.protection.outlook.com/?url=https%3A%2F%2Fdocs.fedoraproject.org%2Fen-US%2Fproject%2Fcode-of-conduct%2F&data=05%7C01%7Cgrant.janssen%40efilm.com%7C9c040f23f57a47fe41ed08da50367153%7C4ef3e80f9fc24b3387194a4b1b215b69%7C0%7C0%7C637910492005203684%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000%7C%7C%7C&sdata=Q3va0%2BYtjgspG3TsTDO4NOT36XnCHjl%2FwtFC5slb%2BVI%3D&reserved=0 List Guidelines: https://nam10.safelinks.protection.outlook.com/?url=https%3A%2F%2Ffedoraproject.org%2Fwiki%2FMailing_list_guidelines&data=05%7C01%7Cgrant.janssen%40efilm.com%7C9c040f23f57a47fe41ed08da50367153%7C4ef3e80f9fc24b3387194a4b1b215b69%7C0%7C0%7C637910492005203684%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000%7C%7C%7C&sdata=GFEmjnOytC7UufKPM2NfV1HraqGVnNdppnhQlSx0VN8%3D&reserved=0 List Archives: https://nam10.safelinks.protection.outlook.com/?url=https%3A%2F%2Flists.fedorahosted.org%2Farchives%2Flist%2Ffreeipa-users%40lists.fedorahosted.org&data=05%7C01%7Cgrant.janssen%40efilm.com%7C9c040f23f57a47fe41ed08da50367153%7C4ef3e80f9fc24b3387194a4b1b215b69%7C0%7C0%7C637910492005203684%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000%7C%7C%7C&sdata=zIbRCQs0aHGOOmd7ORkI1oj4MpO5IJThAvWojcnDLok%3D&reserved=0 Do not reply to spam on the list, report it: https://nam10.safelinks.protection.outlook.com/?url=https%3A%2F%2Fpagure.io%2Ffedora-infrastructure&data=05%7C01%7Cgrant.janssen%40efilm.com%7C9c040f23f57a47fe41ed08da50367153%7C4ef3e80f9fc24b3387194a4b1b215b69%7C0%7C0%7C637910492005203684%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000%7C%7C%7C&sdata=eNXAWyGvXmcar7cHUFIWiG6FMHXu1X5rYvFtCKnngWo%3D&reserved=0
_______________________________________________ FreeIPA-users mailing list -- [email protected] To unsubscribe send an email to [email protected] Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedorahosted.org/archives/list/[email protected] Do not reply to spam on the list, report it: https://pagure.io/fedora-infrastructure
