[Freeipa-users] IPA and SSSD sudo

Jakub Hrozek jhrozek at redhat.com
Wed Feb 15 20:58:14 UTC 2017


On Wed, Feb 15, 2017 at 02:44:18PM +0100, Troels Hansen wrote:
> The same rule works as expected if defined in the local sudoers file.

Then I guess this might be a bug..

> 
> I think the problem is that secure_path in "Options" from IPA isn't taken into account.

options should be treated just as any other attribute, so more or les
transparently.

Could you run an ldbsearch of the database to check how was the sudo
rule stored to the sssd cache?

See:
    https://fedorahosted.org/sssd/wiki/HOWTO_Troubleshoot_SUDO




More information about the Freeipa-users mailing list