Thank you. Setting requiredSecret to the same value as secret in
/etc/pki/pki-tomcat/server.xml fixed it for me on CentOS Stream 8. It stopped working
after upgrading FreeIPA from 4.9.3 to 4.9.6.
Seems I barely missed the version that uses "secret":
java -cp catalina.jar org.apache.catalina.util.ServerInfo
Server version: Apache Tomcat/9.0.30
Server built: Jun 29 2021 22:00:15 UTC
Server number: 9.0.30.0
OS Name: Linux
OS Version: 4.18.0-338.el8.x86_64
Architecture: amd64
JVM Version: 1.8.0_302-b08
JVM Vendor: Red Hat, Inc.
Now to figure out why sudo 1.9.8 segfaults when FreeIPA sudo rules are enabled...