Hi Sumit, 

Thank you for the answer. In that case probably I am in the right direction for 
finding the issue with the overrides:
In  AD , the 'User logon name (pre-Windows 2000)' and 'Group name (pre-Windows 
2000)' are the corespondent of 'sAMAccountName' . 'sAMAccountName'  should be 
unique afaik, therefore we cannot have a User name and Group name with the same 
'sAMAccountName' (although they can have the same cn or "name" attribute). 

If that is the case, how does the override work when it search for the primary 
group name, taking into consideration that we cannot have 2 similar 
'sAMAccountName' in AD (because a requirement for group override is to have  
"an existing AD group name") ? 

 
_______________________________________________
FreeIPA-users mailing list -- [email protected]
To unsubscribe send an email to [email protected]
Fedora Code of Conduct: 
https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: 
https://lists.fedorahosted.org/archives/list/[email protected]
Do not reply to spam on the list, report it: 
https://pagure.io/fedora-infrastructure

Reply via email to