[Freeipa-users] CentOS6.3 + Fedora17 + PackageKit / PolicyKit "problem"

2012-10-15 Thread Antti Peltonen
Hi all, Just playing around with my setup that consists of two FreeIPA domain controllers on CentOS6.3 so the version of FreeIPA in use there is 2.2.0 So now after setting up my test laptop with Fedora 17 I proceeded to do an client installation and it seems freeipa-client version on F17 is also

Re: [Freeipa-users] Sudo works for full access, but not on a per command or host level.

2012-10-15 Thread Dmitri Pal
On 10/15/2012 04:46 PM, Dmitri Pal wrote: > On 10/15/2012 04:34 PM, Macklin, Jason wrote: >> >> Hi, >> >> >> >> I apologize up front if this is obvious, but I'm having issues >> configuring sudo privileges. >> >> >> >> I currently have an IPA server running FreeIPA 2.2 with sudo >> configured

Re: [Freeipa-users] Sudo works for full access, but not on a per command or host level.

2012-10-15 Thread Steven Jones
Hi, my 2 cents, 2 possibilities, 1) There should I think be a HBAC rule and a sudo rule pair, I think you need both. For the HBAC rule with limited permissions you need the sudo privaledge and access say ssh and /or login, so at least 2, so when you say "1" it might be that? I dont know how

Re: [Freeipa-users] Sudo works for full access, but not on a per command or host level.

2012-10-15 Thread Dmitri Pal
On 10/15/2012 04:34 PM, Macklin, Jason wrote: > > Hi, > > > > I apologize up front if this is obvious, but I'm having issues > configuring sudo privileges. > > > > I currently have an IPA server running FreeIPA 2.2 with sudo > configured for our administrators on all hosts. This works > fanta

[Freeipa-users] Sudo works for full access, but not on a per command or host level.

2012-10-15 Thread Macklin, Jason
Hi, I apologize up front if this is obvious, but I'm having issues configuring sudo privileges. I currently have an IPA server running FreeIPA 2.2 with sudo configured for our administrators on all hosts. This works fantastic! As soon as I attempt to configure a more specific sudo rule it do

[Freeipa-users] Test Day today

2012-10-15 Thread Rob Crittenden
We're participating in the Fedora Test Days, and today is our day! The list of tests can be found at: https://fedoraproject.org/wiki/Test_Day:2012-10-15_FreeIPA The latest Fedora 18 beta test compose is available via https://fedoraproject.org/wiki/Test_Results:Current_Installation_Test Pleas

Re: [Freeipa-users] Resynchronize Samba Passwort

2012-10-15 Thread Rob Crittenden
Marc Grimme wrote: Am 14.10.2012 23:14, schrieb Simo Sorce: On Fri, 2012-10-12 at 16:47 +0200, Marc Grimme wrote: Right I am ok with sambaPwdMustChange not being set. That's all good. What about sambaPwdLastSet ? Not set when a user is created new. When I change the password: sambaPwdLastSet: 0

Re: [Freeipa-users] Resynchronize Samba Passwort

2012-10-15 Thread Simo Sorce
On Mon, 2012-10-15 at 14:15 +0200, Marc Grimme wrote: > Am 14.10.2012 23:14, schrieb Simo Sorce: > > On Fri, 2012-10-12 at 16:47 +0200, Marc Grimme wrote: > > Right I am ok with sambaPwdMustChange not being set. That's all good. > > What about sambaPwdLastSet ? > Not set when a user is created new.

Re: [Freeipa-users] Resynchronize Samba Passwort

2012-10-15 Thread Marc Grimme
Am 14.10.2012 23:14, schrieb Simo Sorce: > On Fri, 2012-10-12 at 16:47 +0200, Marc Grimme wrote: > Right I am ok with sambaPwdMustChange not being set. That's all good. > What about sambaPwdLastSet ? Not set when a user is created new. When I change the password: sambaPwdLastSet: 0 Not working with

Re: [Freeipa-users] Announcing FreeIPA v3.0.0 Release

2012-10-15 Thread Martin Kosek
On 10/12/2012 08:06 PM, Rob Crittenden wrote: > The FreeIPA team is proud to announce version FreeIPA v3.0.0. > > It can be downloaded from http://www.freeipa.org/Downloads. Correction: FreeIPA 3.0.0 can be downloaded from http://www.freeipa.org/page/Downloads Martin __