Skip to content

Update Realm FreeIPA Keytab Documentation with SELinux permissions fix for 3.12<#2236

Open
wackysysadmin wants to merge 2 commits intotheforeman:gh-pagesfrom
wackysysadmin:update-realm-selinux-docs
Open

Update Realm FreeIPA Keytab Documentation with SELinux permissions fix for 3.12<#2236
wackysysadmin wants to merge 2 commits intotheforeman:gh-pagesfrom
wackysysadmin:update-realm-selinux-docs

Conversation

@wackysysadmin
Copy link

If using mv instead of cp to place the freeipa.keytab file into the foreman-proxy directory then it's possible for the SELinux context to be admin_home_t instead of etc_t.

By adding restorecon to the instructions can ensure that deployers who prefer using mv over cp as a security measure or habit (i.e to avoid forgetting to clean it out of /root) is a smoother experience as not repairing the SELinux context can cause generic permission errors on the Foreman Installer for the file when enabling the Realm feature.

Also gets rid of the extra white space padding at the beginning of the chown and chmod commands to bring it more inline with rest of docs.

…er moves instead of copies file. Fix spacing on chown/chmod commands to remove blank space.
…er moves instead of copies file. Fix spacing on chown/chmod commands to remove blank space.
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant