Your message dated Tue, 04 Feb 2025 19:19:18 +0000
with message-id <e1tfos6-003le7...@fasolo.debian.org>
and subject line Bug#1006829: fixed in freeipa 4.12.2-3
has caused the Debian Bug report #1006829,
regarding freeipa-client missing dependency on libnss-myhostname
to be marked as done.

This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.

(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact ow...@bugs.debian.org
immediately.)


-- 
1006829: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1006829
Debian Bug Tracking System
Contact ow...@bugs.debian.org with problems
--- Begin Message ---
Package: freeipa-client
Version: 4.9.8-1~bpo11+1
Severity: important
X-Debbugs-Cc: gabr...@ifrtech.net

Dear Maintainer,

freeipa-client depends on the libnss-myhostname package to properly
enroll a host. On a minimal install of Debian Bullseye, with
the bullseye-backports repository enabled, this is not a dependency.
This causes an error in ipa-client-install, as shown below.

Steps to reproduce:

* Install Debian Bullseye from ISO. Selected options were BIOS boot,
    guided partitioning (all in one root), and "standard system
    utilites" selected for software.
* Login as root. Run the following:
    - apt update
    - apt install software-properties-common
    - add-apt-repository "deb http://deb.debian.org/debian
      bullseye-backports main contrib non-free"
    - apt update
    - apt install realmd
    - hostnamectl set-hostname debian.ipa.example.com
    - realm join -U jdoe ipa.example.com

Expected result:

Debian machine will be joined to realm.

Actual result:

Realm operation fails. journalctl shows [identifying information
redacted]:

```
Mar 05 17:40:41 debian.ipa.example.com realmd[1851]:  * Resolving:
_ldap._tcp.ipa.example.com
Mar 05 17:40:41 debian.ipa.example.com realmd[1851]:  * Performing LDAP
DSE lookup on: 1.2.3.4
Mar 05 17:40:41 debian.ipa.example.com realmd[1851]:  * Successfully
discovered: ipa.example.com
Mar 05 17:40:44 debian.ipa.example.com realmd[1851]:  * Unconditionally
checking packages
Mar 05 17:40:44 debian.ipa.example.com realmd[1851]:  * Resolving
required packages
Mar 05 17:40:44 debian.ipa.example.com realmd[1851]:  * LANG=C
/usr/sbin/ipa-client-install --domain ipa.example.com --realm
IPA.EXAMPLE.COM --mkhomedir --enable-dns-updates --unattended
--force-join --principal jdoe -W --force-ntpd
Mar 05 17:40:44 debian.ipa.example.com realmd[1851]: Traceback (most
recent call last):
Mar 05 17:40:44 debian.ipa.example.com realmd[1851]:   File
"/usr/sbin/ipa-client-install", line 22, in <module>
Mar 05 17:40:44 debian.ipa.example.com realmd[1851]:     from
ipaclient.install import ipa_client_install
Mar 05 17:40:44 debian.ipa.example.com realmd[1851]:   File
"/usr/lib/python3/dist-packages/ipaclient/install/ipa_client_install.py",
line 7, in <module>
Mar 05 17:40:44 debian.ipa.example.com realmd[1851]:     from
ipaclient.install import client
Mar 05 17:40:44 debian.ipa.example.com realmd[1851]:   File
"/usr/lib/python3/dist-packages/ipaclient/install/client.py", line 37,
in <module>
Mar 05 17:40:44 debian.ipa.example.com realmd[1851]:     from ipalib
import api, errors, x509
Mar 05 17:40:44 debian.ipa.example.com realmd[1851]:   File
"/usr/lib/python3/dist-packages/ipalib/__init__.py", line 919, in
<module>
Mar 05 17:40:44 debian.ipa.example.com realmd[1851]:     from ipalib
import plugable
Mar 05 17:40:44 debian.ipa.example.com realmd[1851]:   File
"/usr/lib/python3/dist-packages/ipalib/plugable.py", line 42, in
<module>
Mar 05 17:40:44 debian.ipa.example.com realmd[1851]:     from ipalib
import errors
Mar 05 17:40:44 debian.ipa.example.com realmd[1851]:   File
"/usr/lib/python3/dist-packages/ipalib/errors.py", line 109, in <module>
Mar 05 17:40:44 debian.ipa.example.com realmd[1851]:     from
ipalib.text import ngettext as ungettext
Mar 05 17:40:44 debian.ipa.example.com realmd[1851]:   File
"/usr/lib/python3/dist-packages/ipalib/text.py", line 139, in <module>
Mar 05 17:40:44 debian.ipa.example.com realmd[1851]:     from
ipalib.request import context
Mar 05 17:40:44 debian.ipa.example.com realmd[1851]:   File
"/usr/lib/python3/dist-packages/ipalib/request.py", line 28, in <module>
Mar 05 17:40:44 debian.ipa.example.com realmd[1851]:     from
ipalib.base import ReadOnly, lock
Mar 05 17:40:44 debian.ipa.example.com realmd[1851]:   File
"/usr/lib/python3/dist-packages/ipalib/base.py", line 26, in <module>
Mar 05 17:40:44 debian.ipa.example.com realmd[1851]:     from
ipalib.constants import NAME_REGEX, NAME_ERROR
Mar 05 17:40:44 debian.ipa.example.com realmd[1851]:   File
"/usr/lib/python3/dist-packages/ipalib/constants.py", line 34, in
<module>
Mar 05 17:40:44 debian.ipa.example.com realmd[1851]:     FQDN =
gethostfqdn()
Mar 05 17:40:44 debian.ipa.example.com realmd[1851]:   File
"/usr/lib/python3/dist-packages/ipapython/fqdn.py", line 21, in
gethostfqdn
Mar 05 17:40:44 debian.ipa.example.com realmd[1851]:     gai =
socket.getaddrinfo(
Mar 05 17:40:44 debian.ipa.example.com realmd[1851]:   File
"/usr/lib/python3.9/socket.py", line 953, in getaddrinfo
Mar 05 17:40:44 debian.ipa.example.com realmd[1851]:     for res in
_socket.getaddrinfo(host, port, family, type, proto, flags):
Mar 05 17:40:44 debian.ipa.example.com realmd[1851]: socket.gaierror:
[Errno -2] Name or service not known
Mar 05 17:40:44 debian.ipa.example.com realmd[1851]:  ! Running
ipa-client-install failed
```

Resolution:

* Install libnss-myhostname
    - apt install libnss-myhostname
* Retry joining realm
    - realm join -U jdoe ipa.example.com
* Realm join succeeds.


-- System Information:
Debian Release: 11.2
  APT prefers stable-updates
  APT policy: (500, 'stable-updates'), (500, 'stable-security'), (500, 'stable')
Architecture: amd64 (x86_64)

Kernel: Linux 5.10.0-11-amd64 (SMP w/4 CPU threads)
Locale: LANG=en_US.UTF-8, LC_CTYPE=en_US.UTF-8 (charmap=UTF-8), LANGUAGE not set
Shell: /bin/sh linked to /usr/bin/dash
Init: systemd (via /run/systemd/system)
LSM: AppArmor: enabled

Versions of packages freeipa-client depends on:
ii  bind9-dnsutils [dnsutils]    1:9.16.22-1~deb11u1
ii  bind9-utils                  1:9.16.22-1~deb11u1
ii  certmonger                   0.79.13-3
ii  curl                         7.74.0-1.3+deb11u1
ii  freeipa-common               4.9.8-1~bpo11+1
ii  krb5-user                    1.18.3-6+deb11u1
ii  libc6                        2.31-13+deb11u2
ii  libcom-err2                  1.46.2-2
ii  libcurl4                     7.74.0-1.3+deb11u1
ii  libini-config5               0.6.1-2
ii  libjansson4                  2.13.1-1.1
ii  libk5crypto3                 1.18.3-6+deb11u1
ii  libkrb5-3                    1.18.3-6+deb11u1
ii  libldap-2.4-2                2.4.57+dfsg-3
ii  libnss-sss                   2.4.1-2
ii  libnss3-tools                2:3.61-1+deb11u2
ii  libpam-sss                   2.4.1-2
ii  libpopt0                     1.18-2
ii  libsasl2-modules-gssapi-mit  2.1.27+dfsg-2.1+deb11u1
ii  libssl1.1                    1.1.1k-1+deb11u1
ii  libsss-sudo                  2.4.1-2
ii  oddjob-mkhomedir             0.34.6-1
ii  python3                      3.9.2-3
ii  python3-dnspython            2.0.0-1
ii  python3-gssapi               1.6.1-1+b3
ii  python3-ipaclient            4.9.8-1~bpo11+1
ii  python3-ldap                 3.2.0-4+b3
ii  python3-sss                  2.4.1-2
ii  sssd                         2.4.1-2

Versions of packages freeipa-client recommends:
pn  chrony  <none>

Versions of packages freeipa-client suggests:
pn  libpam-krb5  <none>

-- no debconf information

--- End Message ---
--- Begin Message ---
Source: freeipa
Source-Version: 4.12.2-3
Done: Timo Aaltonen <tjaal...@debian.org>

We believe that the bug you reported is fixed in the latest version of
freeipa, which is due to be installed in the Debian FTP archive.

A summary of the changes between this version and the previous one is
attached.

Thank you for reporting the bug, which will now be closed.  If you
have further comments please address them to 1006...@bugs.debian.org,
and the maintainer will reopen the bug report if appropriate.

Debian distribution maintenance software
pp.
Timo Aaltonen <tjaal...@debian.org> (supplier of updated freeipa package)

(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing ftpmas...@ftp-master.debian.org)


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

Format: 1.8
Date: Tue, 04 Feb 2025 21:06:42 +0200
Source: freeipa
Built-For-Profiles: noudeb
Architecture: source
Version: 4.12.2-3
Distribution: unstable
Urgency: medium
Maintainer: Debian FreeIPA Team <pkg-freeipa-de...@alioth-lists.debian.net>
Changed-By: Timo Aaltonen <tjaal...@debian.org>
Closes: 1003179 1006829 1044642 1049799 1089716
Changes:
 freeipa (4.12.2-3) unstable; urgency=medium
 .
   * control: Add libnss-myhostname to client depends. (Closes: #1006829)
   * control: Add python3-ifaddr to ipalib depends. (Closes: #1089716)
   * control: Add python3-sphinx to build-depends. (Closes: #1003179,
     #1044642, #1049799)
Checksums-Sha1:
 6c36df512d7910852403e93abcbb3e028e3313c8 3046 freeipa_4.12.2-3.dsc
 0ee49af62896b5347eeb25623ef70f055feb698d 281772 freeipa_4.12.2-3.debian.tar.xz
 6e2117cefc091c192fa774c6baeee7643d4d7f70 11062 
freeipa_4.12.2-3_source.buildinfo
Checksums-Sha256:
 cdddfad4a01d5da9dc34fb3e61287d64a0f1bc483e63260bbc1317fb6ecc40c0 3046 
freeipa_4.12.2-3.dsc
 c7ae4828eec00404f03eb0f44348cf064c0d0f6e68f23591852ff9ccf9fb89fd 281772 
freeipa_4.12.2-3.debian.tar.xz
 a1df86224b020cd49cfecfffefe0cdcb2554fa1b303dd76d74a0a35628269850 11062 
freeipa_4.12.2-3_source.buildinfo
Files:
 bad8049202b127e20ab6735f51418014 3046 net optional freeipa_4.12.2-3.dsc
 ca02164e5b6133324ac716d1ef262c42 281772 net optional 
freeipa_4.12.2-3.debian.tar.xz
 209e27c1ff7ff54f938a6437a08235f1 11062 net optional 
freeipa_4.12.2-3_source.buildinfo

-----BEGIN PGP SIGNATURE-----
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=8ZFv
-----END PGP SIGNATURE-----

Attachment: pgpJINTFdyqH8.pgp
Description: PGP signature


--- End Message ---

Reply via email to