Hi all, how does sssd process multiple sudo rules from an OU search base?  I have my base pointed at an OU where I have one sudo rule applied, and that works, but have another farther down.  I can see in the logs that it sees both rules.  What I can’t find is how sssd handles that?  does it merge the rules?  How does it handle conflicts?  Does computer object location matter like it does for group policies?

 

Todd