sssd crash on RHEL 7.3
by smfrench@gmail.com
Noticed sssd service won't start on one of our RHEL 7.3 systems. Only obvious difference between working and failing systems (both joined same way to samba domain) was the version of Samba. One has Samba 4.7 and one has Samba 4.5 (built the same way). sssd config looks identical, "net ads info" shows the same output, klist -ke output matches - but sssd crashes on one (see below) when starting the service. Ideas?
sssd[8097]: segfault at 7f3bd2f38d78 ip 00007f3bd2f38d78 sp 00007ffd49520298 error 15 in memberof.so[7f3bd2f38000+1000]
Jul 14 17:53:03 sfrench systemd[1]: Starting System Security Services Daemon...
-- Subject: Unit sssd.service has begun start-up
-- Defined-By: systemd
-- Support: http://lists.freedesktop.org/mailman/listinfo/systemd-devel
--
-- Unit sssd.service has begun starting up.
Jul 14 17:53:03 sfrench-dp1 sssd[3158]: segfault at 7fbef07b3d78 ip 00007fbef07b3d78 sp 00007ffc0b615058 error 15 in me
Jul 14 17:53:03 sfrench-dp1 sssd[3158]: Starting up
Jul 14 17:53:03 sfrench-dp1 systemd[1]: sssd.service: control process exited, code=exited status=1
Jul 14 17:53:03 sfrench-dp1 systemd[1]: Failed to start System Security Services Daemon.
-- Subject: Unit sssd.service has failed
-- Defined-By: systemd
-- Support: http://lists.freedesktop.org/mailman/listinfo/systemd-devel
--
-- Unit sssd.service has failed.
--
-- The result is failed.
Jul 14 17:53:03 sfrench-dp1 systemd[1]: Unit sssd.service entered failed state.
Jul 14 17:53:03 sfrench-dp1 systemd[1]: sssd.service failed.
6 years, 9 months
[sssd PR#317][opened] Make sure overrides work with files provider
by sumit-bose
URL: https://github.com/SSSD/sssd/pull/317
Author: sumit-bose
Title: #317: Make sure overrides work with files provider
Action: opened
PR body:
"""
There are two issues with overrides and the files provider. First since there
is not backend to call the domain object is not refreshed during the initial
get_domains request. As a result the current view is not read from the cache
and not added to the domain object. As a result the nss responders not aware
that there are overrides at all.
The second is that the overide related attributes are removed from the user and
group object while they are refreshed form the files.
Tests for overrides and the files provider can be found in
https://github.com/SSSD/sssd/pull/265.
The third patch is not strictly related to overrides but to the files provider
in general. Currently the configured auth provider wouldn't be called because
the files provider is handled like the local provider. Please let me know if
this patch should get a ticket and a PR on its own or if it can stay here.
Resolves https://pagure.io/SSSD/sssd/issue/3391
"""
To pull the PR as Git branch:
git remote add ghsssd https://github.com/SSSD/sssd
git fetch ghsssd pull/317/head:pr317
git checkout pr317
6 years, 9 months