>From 5531302b04eb4eb5ac50bd86f62fa355d93a704d Mon Sep 17 00:00:00 2001 From: Jakub Hrozek Date: Fri, 8 Aug 2014 21:08:24 +0200 Subject: [PATCH] NSS: Ignore default_domain for netgroups https://fedorahosted.org/sssd/ticket/2400 Netgroups often have members that will not process correctly when we require a fully-qualified name. This patch simply ignores the default_domain setting for netgroup lookups - we ignore FQDN only domains for netgroup lookups since 1933ff17513da1d979dd22776a03478341ef5e6b anyway. --- src/responder/nss/nsssrv_netgroup.c | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/src/responder/nss/nsssrv_netgroup.c b/src/responder/nss/nsssrv_netgroup.c index 86cb8cd4d97de4c72944ed7a201b6335681cf1eb..5f879e2dde0f86fd96bc26a12075b0c090e4681f 100644 --- a/src/responder/nss/nsssrv_netgroup.c +++ b/src/responder/nss/nsssrv_netgroup.c @@ -209,7 +209,7 @@ static struct tevent_req *setnetgrent_send(TALLOC_CTX *mem_ctx, dctx->cmdctx = state->cmdctx; ret = sss_parse_name_for_domains(state, client->rctx->domains, - client->rctx->default_domain, rawname, + NULL, rawname, &domname, &state->netgr_shortname); if (ret != EOK) { DEBUG(SSSDBG_OP_FAILURE, "Invalid name received [%s]\n", rawname); -- 1.9.3