Currently our defaults in the ipa backend are appropriate only for v2 (which is unreleased). We could check the ipa version by looking it up in the LDAP server and change defaults appropriately in case it is < 2.0
We would turn off access checks as < 2.0 do have no HBAC support and would make it optional to use a keytab to access the ipa server.
Fields changed
component: SSSD => IPA Provider milestone: NEEDS_TRIAGE => SSSD 1.4.0 owner: somebody => sgallagh
This should be handled by the ipa-client-install script. There's no good reason to support the auto-detection in the SSSD itself.
resolution: => wontfix status: new => closed
Metadata Update from @simo: - Issue assigned to sgallagh - Issue set to the milestone: SSSD 1.5.0
SSSD is moving from Pagure to Github. This means that new issues and pull requests will be accepted only in SSSD's github repository.
This issue has been cloned to Github and is available here: - https://github.com/SSSD/sssd/issues/1514
If you want to receive further updates on the issue, please navigate to the github issue and click on subscribe button.
subscribe
Thank you for understanding. We apologize for all inconvenience.