On Thu, 2011-08-18 at 18:02 +0200, Jakub Hrozek wrote:
On Thu, Aug 18, 2011 at 05:38:11PM +0200, Sumit Bose wrote:
> On Thu, Aug 18, 2011 at 04:48:32PM +0200, Jan Zelený wrote:
> > The patches look fine, but I didn't manage to set up environment to test
> > new behavior. Nothing seems to be broken though
> If you have a running IPA server you can remove the krbPrincipalKey
> attribute from a user but keep userPassword. This should trigger sssd to
> run the migration code if you try to log in as this user.
If that doesn't work for you, feel free to ping me off list and use my
I was trying to test this, but instead of quietly creating the kerberos
password, it's prompting me to change the password. I wonder if this is
related to LDAP password policy? I cannot ack this until we figure out
why this is happening.