Hi Sumit, Thank you for the answer. In that case probably I am in the right direction for finding the issue with the overrides: In AD , the 'User logon name (pre-Windows 2000)' and 'Group name (pre-Windows 2000)' are the corespondent of 'sAMAccountName' . 'sAMAccountName' should be unique afaik, therefore we cannot have a User name and Group name with the same 'sAMAccountName' (although they can have the same cn or "name" attribute).
If that is the case, how does the override work when it search for the primary group name, taking into consideration that we cannot have 2 similar 'sAMAccountName' in AD (because a requirement for group override is to have "an existing AD group name") ? _______________________________________________ FreeIPA-users mailing list -- [email protected] To unsubscribe send an email to [email protected] Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedorahosted.org/archives/list/[email protected] Do not reply to spam on the list, report it: https://pagure.io/fedora-infrastructure
