#1712 sudoNotBefore/sudoNotAfter not supported by sssd sudoers plugin
Closed: Fixed Opened by pbrezina.

https://bugzilla.redhat.com/show_bug.cgi?id=877438 (Red Hat Enterprise Linux 6)

Description of problem:
The sssd sudoers plugin doesn't support sudoNotBefore and sudoNotAfter
attributes.
Version-Release number of selected component (if applicable):
sudo-1.8.6p3-5.el6.x86_64
How reproducible:
always
Steps to Reproduce:
1. Use the attached LDIF file to fill LDAP directory
2. Use the attached sssd.conf as the base for client configuration
3. Execute "su -c 'sudo -u user2 whoami' user1" as root
Actual results:
sudo: no tty present and no askpass program specified
(NOTE: the actual result above is also affected by Bug 875740)
Expected results:
user2
Additional info:
The LDAP sudoers plugin works as documented.

Fields changed

blockedby: =>
blocking: =>
coverity: =>
design: =>
design_review: => 0
feature_milestone: =>
fedora_test_page: =>
owner: somebody => pbrezina
patch: 0 => 1
status: new => assigned
testsupdated: => 0

Fields changed

milestone: NEEDS_TRIAGE => SSSD 1.10 beta

  • master: 5a2cce34cf8843613b0b9dfde054b3d471dd5f3a

resolution: => fixed
status: assigned => closed

For tickets already closed set the field to "Want"

selected: => Want

Metadata Update from @pbrezina:
- Issue assigned to pbrezina
- Issue set to the milestone: SSSD 1.10 beta

SSSD is moving from Pagure to Github. This means that new issues and pull requests
will be accepted only in SSSD's github repository.

This issue has been cloned to Github and is available here:
- https://github.com/SSSD/sssd/issues/2754

If you want to receive further updates on the issue, please navigate to the github issue
and click on subscribe button.

Thank you for understanding. We apologize for all inconvenience.

Metadata