>>> On 8/19/2011 at 10:53 AM, "Peter E. Abresch Jr.   - at Pepco"
<[email protected]> wrote: 
> I have the following specified:
> nss_initgroups_ignoreusers 
> root,ldap,haldaemon,messagebus,dbus,bin,daemon,postfix,sshd,polkituser,uuidd
> ,100,101
> 
> I know I probably only need a few of these but I wanted to eliminate the 
> messages.
> 
> This does not appear to be working as expected. Of course my expectations 
> could be off. What are everyone?s thoughts on this? Is this an issue that 
> I need to push to support? What are others doing with Linux RACF LDAP 
> authorizations? All comments are welcome. Thanks

A Google search found something that indicates perhaps having "too many" users 
listed can be a problem.  They were able to get the ignore list to work with 2 
entries, but having 13 didn't.  This was on RHEL5 from June of this year, so 
fairly recent.  Give that a try and see what happens.  Then regardless of the 
result, open up a support request.


Mark Post

----------------------------------------------------------------------
For LINUX-390 subscribe / signoff / archive access instructions,
send email to [email protected] with the message: INFO LINUX-390 or visit
http://www.marist.edu/htbin/wlvindex?LINUX-390
----------------------------------------------------------------------
For more information on Linux on System z, visit
http://wiki.linuxvm.org/

Reply via email to