[Freeipa-devel] Error updating group membership

Rob Crittenden rcritten at redhat.com
Thu Nov 15 18:05:55 UTC 2007


David O'Brien wrote:
> David O'Brien wrote:
>> Running on 32-bit F7
>>
>> I created a "regular" user as admin, and then logged on as that user
>> from the client. I tried to add myself to "ipausers" but received "There
>> was an error updating groups. Failures have been preserved in the
>> add/remove lists."
>>
>> I assume this means I can't add myself to the ipausers group, but it
>> doesn't really say why (e.g. Insufficient permissions).
>>
>> What and where are the "add/remove lists"?
>>
>> I want to ask, "Can we show which groups a user is allowed to interact
>> with (i.e. join/leave)" but I remember rcrit I think saying we don't
>> check this stuff until you hit Submit. Pity.
>>
>>
> 
> On a related note, if you attempt to add a group as a regular user, you
> get an extensive error message: Group add failed: A database error
> occurred {'info': "Insufficient 'add' privilege to add the entry...} etc.
> 
> Much more informative, but not that pretty.

Can you open a bug on the extensiveness of the message :-)

And really, a non-admin user should only see Find Users and Groups and 
Self-Service now.

rob
-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/x-pkcs7-signature
Size: 3245 bytes
Desc: S/MIME Cryptographic Signature
URL: <http://listman.redhat.com/archives/freeipa-devel/attachments/20071115/f583ca94/attachment.bin>


More information about the Freeipa-devel mailing list