Am Fri, Jun 18, 2021 at 07:55:32PM -0000 schrieb iulian roman:
> Am Fri, Jun 18, 2021 at 01:16:30PM -0000 schrieb iulian roman:
>
> Hi,
>
> if you do not want to send them here, feel free to send them to me
> directly.
>
Hi Sumit,
I have sent the logs to your email. They were quite big to attach here.
Hi,
thank you for the logs, they helped me to understand the setup better.
If I understand it correctly you are letting IPA/SSSD automatically
assign UIDs and GIDs to AD users and groups and then created an
id-override for a user where only the UID is set to a different value.
This in fact might be a scenario we currently didn't cover properly. The
id-overrides were introduced as a tool to facilitate migrations and we
used various use-cases/user-stories for testing since the overall
possibilities with id-overrides are quite large. For the automatic ID
assignment we thought that for legacy systems which still depend on old
UIDs and GIDs both must be changed. This should also show a possible
workaround.
If you add a GID to the user override as well which is either the GID of
an existing AD group or the overridden one from a group override the
client should be able to resolve the user as well.
HTH
bye,
Sumit
> bye,
> Sumit
Hi Sumit,
They are
_______________________________________________
sssd-users mailing list -- sssd-users(a)lists.fedorahosted.org
To unsubscribe send an email to sssd-users-leave(a)lists.fedorahosted.org
Fedora Code of Conduct:
https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines:
https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives:
https://lists.fedorahosted.org/archives/list/sssd-users@lists.fedorahoste...
Do not reply to spam on the list, report it:
https://pagure.io/fedora-infrastructure