#1988 hbactest fails while you have svcgroup in hbacrule.
Closed: Fixed None Opened 12 years ago by rcritten.

https://bugzilla.redhat.com/show_bug.cgi?id=746227

Description of problem:


Version-Release number of selected component (if applicable):
ipa-server-2.1.2-2.el6.x86_64

How reproducible:
always

Steps to Reproduce:
1. [root@qe-blade-04 ~]# ipa hbacrule-show rule3
  Rule name: rule3
  Enabled: TRUE
  Users: user3
  Hosts: qe-blade-04.idm.lab.bos.redhat.com
  Source Hosts: ipaqavme.idm.lab.bos.redhat.com
  Service Groups: ftp


2. [root@qe-blade-04 ~]# ipa hbacsvcgroup-show ftp
  Service group name: ftp
  Description: Default group of ftp related services
  Member HBAC service: ftp, proftpd, pure-ftpd, gssftp, vsftpd


3. [root@qe-blade-04 ~]# ipa hbactest --user=user3
--srchost=ipaqavme.idm.lab.bos.redhat.com
--host=qe-blade-04.idm.lab.bos.redhat.com --service=vsftpd --rule=rule3
---------------------
Access granted: False
---------------------
  notmatched: rule3
[root@qe-blade-04 ~]#


Actual results: Access granted: False


Expected results: Access granted: True & matched: rule3


Additional info:

Patch sent for review

Metadata Update from @rcritten:
- Issue assigned to abbra
- Issue set to the milestone: FreeIPA 2.1.4 (bug fixing)

7 years ago

Login to comment on this ticket.

Metadata