[ovirt-users] Having issue with external IPA

Donny Davis donny at fortnebula.com
Mon Oct 2 13:36:04 UTC 2017


Does the user you are using have permissions to add people? Why not just
use IPA to add the user accounts?

On Mon, Oct 2, 2017 at 2:26 AM, Ondra Machacek <omachace at redhat.com> wrote:

> On Sun, Oct 1, 2017 at 1:07 PM, Yan Naing Myint
> <yannaing at cyberwings.asia> wrote:
> > Hello guys,
> >
> > I'm having problem with adding users from my FreeIPA server to oVirt.
> > 1. Status of ovirt-engine-extension-aaa-ldap-setup is success with RHDS
> > 2. I cannot add IPA users in oVirt webadmin panel
> > 3. In oVirt web admin panel it says "Error while executing action
> AddUser:
> > Internal Engine Error"
> >
> > What will be the problem or is it a bug?
>
> Can you please share the log from the following command?
>
>  $ ovirt-engine-extensions-tool --log-level=FINEST
> --log-file=/tmp/aaa.log aaa search --entity-name=mgorca
> --extension-name=cyberwings.local
>
> > Is there any suggestion of how do it make it work?
> >
> > in the engine.log it says;
> >
> > 2017-10-01 17:30:52,436+06 ERROR
> > [org.ovirt.engine.core.bll.aaa.AddUserCommand] (default task-113)
> > [bf5822eb-39da-49e5-b2ab-9865f71346a3] Transaction rolled-back for
> command
> > 'org.ovirt.engine.core.bll.aaa.AddUserCommand'.
> > 2017-10-01 17:30:52,459+06 WARN
> > [org.ovirt.engine.core.dal.dbbroker.auditloghandling.AuditLogDirector]
> > (default task-113) [bf5822eb-39da-49e5-b2ab-9865f71346a3] EVENT_ID:
> > USER_FAILED_ADD_ADUSER(327), Correlation ID:
> > bf5822eb-39da-49e5-b2ab-9865f71346a3, Call Stack: null, Custom ID: null,
> > Custom Event ID: -1, Message: Failed to add User 'mgorca' to the system.
> >
> > in cyberwings.local.properties
> >
> > ovirt.engine.extension.name = cyberwings.local
> > ovirt.engine.extension.bindings.method = jbossmodule
> > ovirt.engine.extension.binding.jbossmodule.module =
> > org.ovirt.engine-extensions.aaa.ldap
> > ovirt.engine.extension.binding.jbossmodule.class =
> > org.ovirt.engineextensions.aaa.ldap.AuthzExtension
> > ovirt.engine.extension.provides = org.ovirt.engine.api.
> extensions.aaa.Authz
> > config.profile.file.1 = ../aaa/cyberwings.local.properties
> > config.globals.baseDN.simple_baseDN = dc=cyberwings,dc=local
> >
> > in cyberwings.local-authn.properties
> > ovirt.engine.extension.name = cyberwings.local-authn
> > ovirt.engine.extension.bindings.method = jbossmodule
> > ovirt.engine.extension.binding.jbossmodule.module =
> > org.ovirt.engine-extensions.aaa.ldap
> > ovirt.engine.extension.binding.jbossmodule.class =
> > org.ovirt.engineextensions.aaa.ldap.AuthnExtension
> > ovirt.engine.extension.provides = org.ovirt.engine.api.
> extensions.aaa.Authn
> > ovirt.engine.aaa.authn.profile.name = cyberwings.local
> > ovirt.engine.aaa.authn.authz.plugin = cyberwings.local
> > config.profile.file.1 = ../aaa/cyberwings.local.properties
> > config.globals.baseDN.simple_baseDN = dc=cyberwings,dc=local
> >
> >
> > --
> > Yan Naing Myint
> > CEO
> > Server & Network Engineer
> > Cyber Wings Co., Ltd
> > http://cyberwings.asia
> > 09799950510
> >
> > _______________________________________________
> > Users mailing list
> > Users at ovirt.org
> > http://lists.ovirt.org/mailman/listinfo/users
> >
> _______________________________________________
> Users mailing list
> Users at ovirt.org
> http://lists.ovirt.org/mailman/listinfo/users
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.ovirt.org/pipermail/users/attachments/20171002/ec02d9e5/attachment.html>


More information about the Users mailing list