I try to reanimate this thread, hopefully someone will be willing to spare some 
time and help with it. I have done some more tests, and it seems that override 
of AD users in sssd 2.2.3 does not work as expected. I do not know if it is a 
bug or works as expected, but as I mentioned several times, with clean cache on 
the IPA server and client, the id of the user is not resolved unless I manually 
run getent group <user_name>. 
In the IPA client sssd_ipa.log 

[ipa_s2n_exop_done] (0x0040): ldap_extended_operation result: No such 
object(32), (null).

In the IPA server sssd_nss.log I see the bellow error:
[nss_protocol_fill_initgr] (0x0080): Unable to find primary gid [2]: No such 
file or directory

Did anyone experienced this or find a workaround for the problem ? 
_______________________________________________
FreeIPA-users mailing list -- [email protected]
To unsubscribe send an email to [email protected]
Fedora Code of Conduct: 
https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: 
https://lists.fedorahosted.org/archives/list/[email protected]
Do not reply to spam on the list, report it: 
https://pagure.io/fedora-infrastructure

Reply via email to