Bug 1651577 - [WebUI] IPA Error 3007: RequirmentError" while adding members in "User ID overrides" tab
Summary: [WebUI] IPA Error 3007: RequirmentError" while adding members in "User ID ove...
Alias: None
Product: Red Hat Enterprise Linux 8
Classification: Red Hat
Component: ipa-idoverride-memberof
Version: 8.0
Hardware: x86_64
OS: Linux
Target Milestone: rc
: 8.0
Assignee: IPA Maintainers
QA Contact: ipa-qe
Filip Hanzelka
Depends On:
TreeView+ depends on / blocked
Reported: 2018-11-20 11:28 UTC by Varun Mylaraiah
Modified: 2019-12-19 11:00 UTC (History)
8 users (show)

Fixed In Version:
Doc Type: Known Issue
Doc Text:
.Adding ID overrides of AD users works only in the IdM CLI Currently, adding ID overrides of Active Directory (AD) users to Identity Management (IdM) groups for the purpose of granting access to management roles fails in the IdM Web UI. To work around the problem, use the IdM command-line interface (CLI) instead. Note that if you installed the `ipa-idoverride-memberof-plugin` package on the IdM server after previously performing certain operations using the `ipa` utility, Red Hat recommends cleaning up the `ipa` utility's cache to force it to refresh its view about the IdM server metadata. To do so, remove the content of the `~/.cache/ipa` directory for the user under which the `ipa` utility is executed. For example, for root: [literal,subs="+quotes,verbatim"] .... # *rm -r /root/.cache/ipa* ....
Clone Of:
Last Closed:
Type: Bug
Target Upstream Version:

Attachments (Terms of Use)
Error_dialog (59.87 KB, image/png)
2018-11-20 11:28 UTC, Varun Mylaraiah
no flags Details

Description Varun Mylaraiah 2018-11-20 11:28:44 UTC
Created attachment 1507396 [details]

Description of problem:

In Webui showing "IPA Error 3007: RequirmentError" while adding members in "User ID overrides" tab

-Red Hat Enterprise Linux release 8.0 Beta (Ootpa)


How reproducible:

Steps to Reproduce:
1. Setup ipa-server
2. Setup AD trust
3. Add Trust Domain, Go to Identity > IPA Server > Trusts > Trusts > Add
4. Create ID override for AD user, Go to Identity > ID View > click "Default Trust View"
5. Click "Add" button on the right-hand side
6. ADD <ADuser@addomain> in "user to override" field 
7. Hit "Add"
8. Add AD user to admin group, Go to Identity > Groups > click "admins"
9. Now Click "User ID overrides" tab (next to "External" tab)
10. Then click "Add" button.

Actual results:
"IPA Error 3007: RequirmentError" Error dialog pops up.

Expected results:
Should pop up ADD dialog.

Additional info:
Please refer to the attached screenshot
Related CLI Bugzilla https://bugzilla.redhat.com/show_bug.cgi?id=1651334

Note You need to log in before you can comment on or make changes to this bug.