On Wed, Feb 04, 2015 at 12:18:44PM +0600, Eugene Peregudov wrote:
Sumit Bose <sbose(a)redhat.com> писал(а) в своём письме Tue, 03
Feb 2015
16:56:40 +0600:
>On Tue, Feb 03, 2015 at 04:17:39PM +0600, Eugene Peregudov wrote:
>>
>>Hi,
>>
>>I'm trying to authenticate Active Directory users with different UPN
>>suffixes on my Linux machine.
>>As described in article (
http://jhrozek.livejournal.com/3019.html) SSSD
>>should support for enterprise logins:
>>"some users in AD might use a different Kerberos Principal suffix than
>>the
>>default one".
>>
>>I have two users with different UPN - user1(a)domain.example.com and
>>user2(a)department.example.com
>>
>>#getent passwd user1(a)domain.example.com
>>
>>returns valid user entry, but
>>
>>#getent passwd user2(a)department.example.com
>>
>>returns nothing...
>>
>>What's wrong? Can anyone help me with this issue? Thanks!
>
>Can you send the related sssd_nss logs with debug_level 10 as well?
>
Thanks for answer!
sssd_nss.log is empty with specified debug_level 10 :(
You have to set it explicitly in the [nss] section.
HTH
bye,
Sumit
--
With best regards, Eugene JONIK Peregudov
mailto: eugene.peregudov(a)gmail.com
_______________________________________________
sssd-users mailing list
sssd-users(a)lists.fedorahosted.org
https://lists.fedorahosted.org/mailman/listinfo/sssd-users