Running the ipa command line tools fails with "IPA client is not configured on this system" if the user is mapped to user_u:user_r:user_t:s0
Issue
- If the ipa client is launched by a user in the user_u SELinux user context ( id -Z is user_u:user_r:user_t:s0), ipa does not work
-
Running the ipa command fails with:
$ id -Z user_u:user_r:user_t:s0 $ ipa user-find IPA client is not configured on this system
Environment
- Red Hat Enterprise Linux (RHEL) 7 and 8
- selinux-policy-3.13.1-229.el7_6.5.noarch
Subscriber exclusive content
A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.