[Freeipa-users] Sudo policy not working with group of servers

Rob Crittenden rcritten at redhat.com
Tue Jan 14 15:40:56 UTC 2014


Dimitar Georgievski wrote:
> Hi,
>
> I've been trying to create a simple sudo policy, that would grant
> certain privileges to a group of users on a group of hosts. The policy
> would not work unless I specify the hosts individually in the *Sudo
> Rule* definition page under *Access this hos*t section.
>
> I am using FreeIPA v3.0 and SSSD v1.9.2 on CentOS 6.5

You need to set the NIS domain name on the client machine:

# domainname example.com

Then it should work. You can test with getent netgroup some_hostgroup

rob




More information about the Freeipa-users mailing list