Hi team,
So using the latest sudo release from sudo.ws, and both the freeipa and sssd PPA's on launchpad.net, I managed to get a FreeIPA ssh+sudo deployment working on Ubuntu 12.04 - there were two or three minor caveats though which could be very easy fixes for an OS that is in-support for over another year.
mkdir -p /etc/pki/nssdb && certutil -d /etc/pki/nssdb -N
Oh and I forgot that mkhomedir doesn't work on 12.04 - I have to create /usr/share/pam-configs/mkhomedir with the following content: Name:
activate mkhomedir Default: yes Priority: 900 Session-Type: Additional Session: required pam_mkhomedir.so umask=0022 skel=/etc/skel
And then run pam-auth-update.
pam-auth-update
Cheers
triage notes:
Timo, is this required for porting FreeIPA 4.3 on Ubuntu?
NSS_DB_DIR is already in ipaplatform/base/paths.py, or what do you mean?
actually, during today's triage it was decided that the code which uses "/etc/pki/nssdb" will be removed.
master:
ipa-4-3:
Metadata Update from @platima: - Issue assigned to jcholast - Issue set to the milestone: FreeIPA 4.3.1
Login to comment on this ticket.