Thank you. Setting requiredSecret to the same value as secret in /etc/pki/pki-tomcat/server.xml fixed it for me on CentOS Stream 8. It stopped working after upgrading FreeIPA from 4.9.3 to 4.9.6. Seems I barely missed the version that uses "secret": java -cp catalina.jar org.apache.catalina.util.ServerInfo Server version: Apache Tomcat/9.0.30 Server built: Jun 29 2021 22:00:15 UTC Server number: 9.0.30.0 OS Name: Linux OS Version: 4.18.0-338.el8.x86_64 Architecture: amd64 JVM Version: 1.8.0_302-b08 JVM Vendor: Red Hat, Inc.
Now to figure out why sudo 1.9.8 segfaults when FreeIPA sudo rules are enabled...