Bug 989938

Summary: ipa pwpolicy --maxlife value is not applied correctly
Product: Red Hat Enterprise Linux 6 Reporter: David Spurek <dspurek>
Component: ipaAssignee: Martin Kosek <mkosek>
Status: CLOSED DUPLICATE QA Contact: Namita Soman <nsoman>
Severity: medium Docs Contact:
Priority: medium    
Version: 6.4CC: dspurek, ebenes, rcritten
Target Milestone: rc   
Target Release: ---   
Hardware: Unspecified   
OS: Unspecified   
Whiteboard:
Fixed In Version: Doc Type: Bug Fix
Doc Text:
Story Points: ---
Clone Of: Environment:
Last Closed: 2013-07-30 15:26:59 UTC Type: Bug
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Embargoed:

Description David Spurek 2013-07-30 07:53:06 UTC
Description of problem:

ipa pwpolicy-mod --maxlife accept values up to 2147483647. Maxlife values 999999 and 2147483647 are not applied correctly, ipa pwpolicy-show show them correctly, but user's attribute 'krbpasswordexpiration' is set only 3 months ahead. I expected that policy will be applied correctly or maxlife value will be limited for example to 10000 value.

Version-Release number of selected component (if applicable):
server-3.0.0-25.el6

How reproducible:
always

Steps to Reproduce:
1.
2.
3.

Actual results:
user's attribute 'krbpasswordexpiration' is set only 3 months ahead

Expected results:
user's attribute 'krbpasswordexpiration' is set according to pwpolicy maxlife parameter

Additional info:

upstream ticket https://fedorahosted.org/freeipa/ticket/3817

Comment 1 Martin Kosek 2013-07-30 09:05:39 UTC
Upstream ticket:
https://fedorahosted.org/freeipa/ticket/3817

Comment 2 Martin Kosek 2013-07-30 15:26:59 UTC
This will be fixed in scope of Bug 891977 (you already commented there).

*** This bug has been marked as a duplicate of bug 891977 ***