Re: [Freeipa-users] IPA privileges question

2013-06-03 Thread Simo Sorce
On Fri, 2013-05-31 at 18:45 +, Guy Matz wrote: Sorry, should have mentioned that. I had host principal and have since added ldap: # klist -k krb5.keytab Keytab name: FILE:krb5.keytab KVNO Principal -- 3

Re: [Freeipa-users] IPA privileges question

2013-06-03 Thread Guy Matz
Thanks. Yes, I have realized the error of my ways . . . seems I have just needed the user to have Host Administration privileges. Thanks again, Guy On 06/03/2013 09:16 AM, Simo Sorce wrote: On Fri, 2013-05-31 at 18:45 +, Guy Matz wrote: Sorry, should have mentioned that. I had host

[Freeipa-users] IPA privileges question

2013-05-31 Thread Guy Matz
Hi! I'm writing a web UI to front-end a ipa host-add . . . the web ui runs as a special user who I would like to give credentials to allow it to be able to run the ipa commands necessary . . . I thought I would need to give it a host privilege, but I'm bumping up into the following: ipa:

Re: [Freeipa-users] IPA privileges question

2013-05-31 Thread Rob Crittenden
Guy Matz wrote: Hi! I'm writing a web UI to front-end a ipa host-add . . . the web ui runs as a special user who I would like to give credentials to allow it to be able to run the ipa commands necessary . . . I thought I would need to give it a host privilege, but I'm bumping up into the

Re: [Freeipa-users] IPA privileges question

2013-05-31 Thread Guy Matz
Sorry, should have mentioned that. I had host principal and have since added ldap: # klist -k krb5.keytab Keytab name: FILE:krb5.keytab KVNO Principal -- 3 host/ipadevmstr.collmedia@collmedia.net 3

Re: [Freeipa-users] IPA privileges question

2013-05-31 Thread Rob Crittenden
Guy Matz wrote: Sorry, should have mentioned that. I had host principal and have since added ldap: # klist -k krb5.keytab Keytab name: FILE:krb5.keytab KVNO Principal -- 3