Cheers, Ronald _______________________________________________ FreeIPA-users mailing list -- [email protected] To unsubscribe send an email to [email protected] Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedorahosted.org/archives/list/[email protected] Do not reply to spam on the list, report it: https://pagure.io/fedora-infrastructure
[Freeipa-users] AD user attribute refresh interval
Ronald Wimmer via FreeIPA-users Mon, 10 May 2021 07:06:33 -0700
Today I had a web session with some collegues trying to log in with an
AD user on an IPA client system. We found out that the user account was
expired. After having reactivated that particular user we still saw "AD
user account expired" in the SSSD logs of that system. Which settings
can I use on the SSSD side (when a user is expired, locked, changes its
password, etc.) in order to get AD user attribute changes reflected
immediately on the FreeIPA side.
