Bug 1232468
Summary: | The Domain option is not correctly set in idmapd.conf when ipa-client-automount is executed. | |||
---|---|---|---|---|
Product: | Red Hat Enterprise Linux 6 | Reporter: | Matthew LeSieur <matthew.lesieur> | |
Component: | ipa | Assignee: | IPA Maintainers <ipa-maint> | |
Status: | CLOSED ERRATA | QA Contact: | Namita Soman <nsoman> | |
Severity: | medium | Docs Contact: | ||
Priority: | medium | |||
Version: | 6.6 | CC: | ggatward, ksiddiqu, mkosek, mvarun, pvoborni, rcritten, rvdwees | |
Target Milestone: | rc | |||
Target Release: | --- | |||
Hardware: | All | |||
OS: | Linux | |||
Whiteboard: | ||||
Fixed In Version: | ipa-3.0.0-49.el6 | Doc Type: | Bug Fix | |
Doc Text: | Story Points: | --- | ||
Clone Of: | ||||
: | 1295865 (view as bug list) | Environment: | ||
Last Closed: | 2016-05-11 00:07:53 UTC | Type: | Bug | |
Regression: | --- | Mount Type: | --- | |
Documentation: | --- | CRM: | ||
Verified Versions: | Category: | --- | ||
oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | ||
Cloudforms Team: | --- | Target Upstream Version: | ||
Embargoed: | ||||
Bug Depends On: | ||||
Bug Blocks: | 1295865 |
Description
Matthew LeSieur
2015-06-16 20:13:22 UTC
Thanks for reporting this bug. I'm able to reproduce it even with the development version of FreeIPA. Note: Domain is configured correctly(replaced) if /etc/idmapd.conf already contains a domain configuration in general section. Upstream ticket: https://fedorahosted.org/freeipa/ticket/5069 Petr, Your observation about ipa-client-automount correctly replacing an existing Domain option in /etc/idmapd.conf leads to a good workaround. Before executing ipa-client-automount, uncomment the Domain option. I verified this works after a fresh installation of RHEL 6. Uncommenting the Domain option first does not require restarting rpc.idmapd or clearing out the rpc.idmapd cache on the client or server (nfsidmap -vc) after fixing the Domain option. # mv /etc/idmapd.conf /etc/idmapd.conf-orig # awk '$0 ~ /^#Domain/ { gsub(/^#/, "") }{ print }' < /etc/idmapd.conf-orig > /etc/idmapd.conf # ipa-client-automount --server rhidm.example.com --location default Thanks Matt LeSieur Fixed upstream master: https://git.fedorahosted.org/cgit/freeipa.git/commit/?id=304c8694c4f945846ced5bf3cdaf18d899241876 https://git.fedorahosted.org/cgit/freeipa.git/commit/?id=8403bd9d15a7817a15b85d8e108cad1c155aadbc Verified ipa-client-3.0.0-50.el6.x86_64 [root@blade04 ~]# cat /etc/idmapd.conf | awk '$0 ~ /^#|^$/ { next } { print }' [General] [Mapping] Nobody-User = nobody Nobody-Group = nobody [Translation] Method = nsswitch [root@blade04 ~]# ipa-client-automount --server blade01.testrelm.test --location default IPA server: blade01.testrelm.test Location: default Continue to configure the system with these values? [no]: yes Configured /etc/nsswitch.conf Configured /etc/sysconfig/nfs Configured /etc/idmapd.conf Started rpcidmapd Started rpcgssd Restarting sssd, waiting for it to become available. [root@blade04 ~]# cat /etc/idmapd.conf | awk '$0 ~ /^#|^$/ { next } { print }' [General] Domain = testrelm.test [Mapping] Nobody-User = nobody Nobody-Group = nobody [Translation] Method = nsswitch Since the problem described in this bug report should be resolved in a recent advisory, it has been closed with a resolution of ERRATA. For information on the advisory, and where to find the updated files, follow the link below. If the solution does not work for you, open a new bug report. https://rhn.redhat.com/errata/RHBA-2016-0874.html |