Eventually got to the bottom of it on #sssd.
It turned out that I was configuring Kerberos 5 to run in krb4 mode -
therefore, sssd was going "I don't know how to talk to this library -
let's fail with a 'System Error'"
Not a helpful error - but now sorted.
Chris
On 19/08/14 23:30, Chris Malton wrote:
If anyone wants to see the logs or configs, here's the links to them:
SSSD log file: http://paste.ubuntu.com/8092277/
SSSD config file: http://paste.ubuntu.com/8092294/
Regards,
Chris
On 19/08/14 23:27, Chris Malton wrote:
Hi all,
If anyone has any experience with breaking (and preferably
subsequently fixing) SSSD authentication against a Windows 2008
domain from Ubuntu 14.04 I'd be eternally grateful.
I am currently stumped as to why:
- "getent passwd DOMAIN\user" returns the right result
- I can use "su" to switch to that user no problem
- I can't use "DOMAIN\user" as a username to log on via shell or SSH.
I've had the guys in #sssd trying to figure it out as well, and
they're struggling.
Any thoughts?
Regards,
Chris
--
Please post to: [email protected]
Web Interface: https://mailman.lug.org.uk/mailman/listinfo/hampshire
LUG URL: http://www.hantslug.org.uk
--------------------------------------------------------------