When editing a SUDO rule in the Identity Manager WebUI, if the WHO is set to Anyone and you change it to Specific Users and Groups, you must first scroll back up and click SAVE before you can add specific users and groups, otherwise you will get an error.
After changing a setting, you should not have to SAVE before continuing to make changes.
This defect actually applies to all of the boxes on the SUDO rules page: Who, Access Host, Run Commands, etc. They all require you to scroll back up to the top after changing a radio button from Any* to Specific before you can configure the specific setting.
Metadata Update from @abiagion: - Custom field on_review adjusted to https://github.com/freeipa/freeipa/pull/3619
master:
ipa-4-8:
Metadata Update from @stsymbal: - Issue close_status updated to: fixed - Issue status updated to: Closed (was: Open)