[Freeipa-users] howto modify krb principal attributes without kadmin.local

Rob Crittenden rcritten at redhat.com
Wed May 16 22:15:11 UTC 2012


Thomas Jackson wrote:
> kadmin.local:  modprinc +requires_hwauth user
> modify_principal: User modification failed: Insufficient access while
> modifying "user".

What user's ticket do you have when trying to make this change?

The error is coming from 389-ds, not from the KDC ACLs.

For whatever it's worth I tried this in 2.2.0 and it worked.

rob




More information about the Freeipa-users mailing list