Bug 1861912 - [RFE] Use freeipa-ansible equivalents for ipa_priv/perm, ipa_role, get_keytab [NEEDINFO]
Summary: [RFE] Use freeipa-ansible equivalents for ipa_priv/perm, ipa_role, get_keytab
Keywords:
Status: CLOSED WONTFIX
Alias: None
Product: Red Hat OpenStack
Classification: Red Hat
Component: ansible-tripleo-ipa
Version: 16.1 (Train)
Hardware: Unspecified
OS: Unspecified
high
medium
Target Milestone: Alpha
: ---
Assignee: Dave Wilde
QA Contact: Jeremy Agee
URL:
Whiteboard:
Depends On: 1918025
Blocks:
TreeView+ depends on / blocked
 
Reported: 2020-07-29 21:25 UTC by Ade Lee
Modified: 2023-08-03 15:46 UTC (History)
7 users (show)

Fixed In Version:
Doc Type: If docs needed, set a value
Doc Text:
Clone Of:
Environment:
Last Closed: 2021-11-11 19:15:10 UTC
Target Upstream Version:
Embargoed:
ifrangs: needinfo? (dwilde)


Attachments (Terms of Use)


Links
System ID Private Priority Status Summary Last Updated
Red Hat Issue Tracker OSP-251 0 None None None 2021-11-11 19:10:59 UTC

Description Ade Lee 2020-07-29 21:25:35 UTC
Description of problem:

Most of tripleo-ipa (and one bit of THT template) uses the upstream ansible module to do IPA things.  These modules are not supported by Red Hat - and we should use the equivalents in ansible-freeipa instead.

See [1] for details.

At least some of these equivalents are slated for RHEL 8.3.  This BZ is to track those features.  For 8.3 features, we have [2]

The features in 8.4 are: ipa_priv/perm, ipa_role, get_keytab? ipa service cleanup,  

[1] https://docs.google.com/document/d/1vaT2xdD7z7I4JZxW7sLM1AE6_srh_VOtPkpIS2t9caA/edit

[2] https://bugzilla.redhat.com/show_bug.cgi?id=1861910

Version-Release number of selected component (if applicable):


How reproducible:


Steps to Reproduce:
1.
2.
3.

Actual results:


Expected results:


Additional info:

Comment 1 Ade Lee 2020-07-29 21:27:21 UTC
Correction to above -- this is specifically for the features in 8.4


Note You need to log in before you can comment on or make changes to this bug.