freeipa

FreeIPA is an integrated Identity and Authentication solution for Linux/UNIX networked environments.  |  http://www.freeipa.org/

#5130 non-admin users cannot search hbac rules

Created 3 years ago by pvoborni
Modified a year ago

hbacrule has it default attributes (which are used in search) attribute 'memberhostgroup' this attr is not in ACI nor in schema. Therefore all searches with filled filter will fail.

Similar issue as in #5055

Linked to Bugzilla bug: https://bugzilla.redhat.com/show_bug.cgi?id=1243261 (Red Hat Enterprise Linux 7)

master:

  • 2e80645 fix hbac rule search for non-admin users

ipa-4-2:

  • 6ead80d fix hbac rule search for non-admin users

master:

  • a0ce9e6 fix selinuxusermap search for non-admin users

ipa-4-2:

  • c10de0a fix selinuxusermap search for non-admin users
a year ago

Metadata Update from @pvoborni:
- Issue assigned to pvoborni
- Issue set to the milestone: FreeIPA 4.2.1

Login to comment on this ticket.

defect

IPA

1

mbasti

https://bugzilla.redhat.com/show_bug.cgi?id=1243261

cancel