Re: [Freeipa-users] sudo with freeIPA

2014-08-26 Thread Lukas Slebodnik
On (25/08/14 08:33), Megan . wrote: ok. Changed debug_level to 7. I already it in the domain section (first line). Not sure if this makes a difference [root@map1 pam.d]# cat system-auth #%PAM-1.0 # This file is auto-generated. # User changes will be destroyed the next time authconfig is

Re: [Freeipa-users] sudo with freeIPA

2014-08-26 Thread Lukas Slebodnik
On (25/08/14 14:54), William Graboyes wrote: Hi Megan, I had the same problem with CENTOS 6.5 and free-ipa. I did a ton of searching, and IIRC the conclusion was a bug in that version of sssd, I don't remember all of the details, however I do remember the work around. Create a system account

Re: [Freeipa-users] sudo with freeIPA

2014-08-26 Thread Jakub Hrozek
On 25 Aug 2014, at 23:54, William Graboyes wgrabo...@cenic.org wrote: -BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Hi Megan, I had the same problem with CENTOS 6.5 and free-ipa. Megan had a different problem. We were able to get to the root cause in an off-list discussion, the

[Freeipa-users] sudo with freeIPA

2014-08-25 Thread Megan .
Good Morning, I'm very new to freeIPA. I'm running centOS 6.5 with freeIPA v3 I have the freeIPA server up but i'm working on getting SUDO configured. Currently i'm having problems getting sudo commands to work on the client. I'm a bit unclear if i have everything configured correctly. The

Re: [Freeipa-users] sudo with freeIPA

2014-08-25 Thread Martin Kosek
On 08/25/2014 12:51 PM, Megan . wrote: Good Morning, I'm very new to freeIPA. Welcome on board! I'm running centOS 6.5 with freeIPA v3 I have the freeIPA server up but i'm working on getting SUDO configured. Currently i'm having problems getting sudo commands to work on the client.

Re: [Freeipa-users] sudo with freeIPA

2014-08-25 Thread Alexander Bokovoy
On Mon, 25 Aug 2014, Martin Kosek wrote: On 08/25/2014 12:51 PM, Megan . wrote: Good Morning, I'm very new to freeIPA. Welcome on board! I'm running centOS 6.5 with freeIPA v3 I have the freeIPA server up but i'm working on getting SUDO configured. Currently i'm having problems getting

Re: [Freeipa-users] sudo with freeIPA

2014-08-25 Thread Megan .
Below is the output from the sss_domain.log when i ran the sudo command as the user. I see things about offline replies and LDAP not working. Is this my problem or is this part of a normal series of items that are tried? (Mon Aug 25 11:53:23 2014) [sssd[be[server.example.com]]]

Re: [Freeipa-users] sudo with freeIPA

2014-08-25 Thread Jakub Hrozek
On Mon, Aug 25, 2014 at 06:51:27AM -0400, Megan . wrote: Good Morning, I'm very new to freeIPA. I'm running centOS 6.5 with freeIPA v3 I have the freeIPA server up but i'm working on getting SUDO configured. Currently i'm having problems getting sudo commands to work on the client. I'm

Re: [Freeipa-users] sudo with freeIPA

2014-08-25 Thread Jakub Hrozek
On Mon, Aug 25, 2014 at 08:02:02AM -0400, Megan . wrote: Below is the output from the sss_domain.log when i ran the sudo command as the user. I see things about offline replies and LDAP not working. Is this my problem or is this part of a normal series of items that are tried? (Mon Aug

Re: [Freeipa-users] sudo with freeIPA

2014-08-25 Thread Megan .
ok. Changed debug_level to 7. I already it in the domain section (first line). Not sure if this makes a difference [root@map1 pam.d]# cat system-auth #%PAM-1.0 # This file is auto-generated. # User changes will be destroyed the next time authconfig is run. authrequired

Re: [Freeipa-users] sudo with freeIPA

2014-08-25 Thread William Graboyes
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Hi Megan, I had the same problem with CENTOS 6.5 and free-ipa. I did a ton of searching, and IIRC the conclusion was a bug in that version of sssd, I don't remember all of the details, however I do remember the work around. Create a system