#1992 automember functionality not available for upgraded IPA server
Closed: Fixed None Opened 12 years ago by mkosek.

https://bugzilla.redhat.com/show_bug.cgi?id=746589

Description of problem:

freeipa 2.1.1 introduced automember functionality
(https://fedorahosted.org/freeipa/ticket/1272) providing means of automatic
group membership during the insertion of predefined object types in LDAP.

This functionality is available only when predefined data is in in LDAP
(cn=Hostgroup,cn=automember,cn=etc,$SUFFIX and
cn=Group,cn=automember,cn=etc,$SUFFIX).

Since we do not add this data during ipa-server upgrade process, ipa-server
configured before ipa 2.1.1 won't have this data and any membership operation
will result in error:

# ipa automember-add --type=group devel
ipa: ERROR: Auto Membership is not configured

Version-Release number of selected component (if applicable):

ipa-server-2.1.2-101.20111014T1857zgit3506dc8.el6.x86_64


How reproducible:

Steps to Reproduce:
1. Install and configure ipa-server before 2.1.1 rebase
2. Run upgrade to the most recent ipa-server
3. Try to add automember rule: ipa automember-add --type=group devel

Actual results:

IPA reports an error:

# ipa automember-add --type=group devel
ipa: ERROR: Auto Membership is not configured

Expected results:

Automember rule is added

Patch freeipa-mkosek-152-enable-automember-for-upgraded-servers.patch sent for review

Moving the ticket to the next month iteration.

Metadata Update from @mkosek:
- Issue assigned to mkosek
- Issue set to the milestone: FreeIPA 3.0 Core Effort - 2011/11

7 years ago

Login to comment on this ticket.

Metadata