[Freeipa-users] IPA privileges question

Rob Crittenden rcritten at redhat.com
Fri May 31 16:55:48 UTC 2013


Guy Matz wrote:
> Hi!  I'm writing a web UI to front-end a "ipa host-add" . . .  the web
> ui runs as a special user who I would like to give credentials to allow
> it to be able to run the ipa commands necessary . . .  I thought I would
> need to give it a host privilege, but I'm bumping up into the following:
>
> ipa: ERROR: Insufficient access: Insufficient 'add' privilege to the
> 'userPassword' attribute
>
> That looks like more of an LDAP issue . . .  Any yous guys know how I
> get around this?

What privileges did you assign to the role that this user is a member of?

rob




More information about the Freeipa-users mailing list