[SSSD-users] Re: Experiencing a bug on users' name and ID
On Tue, Apr 24, 2018 at 1:35 PM, Asif Iqbalwrote: > > > On Wed, Apr 18, 2018 at 10:49 AM, Sumit Bose wrote: > >> > [.. stripped for brevity ..] >> > > > >> > > Hi Sumit et al., >> > > >> > > Still like some help to resolve this. >> > >> > Thank you for the logs. Unfortunately I cannot see the reason in the >> > logs why it does not work. I'll have to replicate your setup and try to >> > reproduce the issue and will send my findings in a few days. >> >> I was able to reproduce the issue if I use a string attribute with a >> leading white-space as UID attribute. I have to think a bit about how >> this can be fixed in a general way. >> >> bye, >> Sumit >> >> > Hi Sumit, > > Let me know if you need something for me. I am still looking for a > workaround > > Appreciate your help! > > Hi Sumit, Were you able to find a workaround for this? Appreciate your help -- Asif Iqbal PGP Key: 0xE62693C5 KeyServer: pgp.mit.edu A: Because it messes up the order in which people normally read text. Q: Why is top-posting such a bad thing? ___ sssd-users mailing list -- sssd-users@lists.fedorahosted.org To unsubscribe send an email to sssd-users-le...@lists.fedorahosted.org
[SSSD-users] Re: credentials cache cleared at sssd restart pam_sss + krb5
On (01/05/18 22:52), Jakub Hrozek wrote: >On Tue, May 01, 2018 at 01:53:48PM +0200, cedric hottier wrote: >> Dear sssd users, >> >> I observe that at each sssd start, the credentials cache is cleared. Is it >> an expected behavior ? >> If yes, is there a parameter to make this caching permanent (or at least >> not erased at each sssd restart ). >> My issue is that If I reboot my laptop without connection to my KDC, I am >> not able to log due to [sysdb_cache_auth] cached credentials not available. >> >> here is my config : Debian testing / SSD version : 1.16.1 >> >> /etc/sssd/sssd.conf : >> [sssd] >> services = nss, pam, ifp >> domains = ECCM.LAN >> >> [pam] >> pam_verbosity = 2 >> offline_credentials_expiration = 0 >> >> /etc/sssd/conf.d/01_ECCM_LAN.conf >> [domain/ECCM.LAN] >> debug_level = 10 >> id_provider = files > >I'm afraid this is a known bug with id_provider=files. I was looking >into fixing this last week, but I don't have a patch yet. > Here is an upstream ticket https://pagure.io/SSSD/sssd/issue/3591 >In the meantime, you can use: >id_provider=proxy >proxy_lib_name=files > >I think that should work in the meantime.. > That should work with 1.16.1. Older versions might hit https://pagure.io/SSSD/sssd/issue/3590 LS ___ sssd-users mailing list -- sssd-users@lists.fedorahosted.org To unsubscribe send an email to sssd-users-le...@lists.fedorahosted.org
[SSSD-users] Re: sssd-users@lists.fedorahosted.org post from ced...@hottier.com requires approval
> On 1 May 2018, at 23:30, ad...@fedoraproject.org wrote: > > As list administrator, your authorization is requested for the > following mailing list posting: > >List:sssd-users@lists.fedorahosted.org >From:ced...@hottier.com >Subject: Re: [SSSD-users] Re: credentials cache cleared at sssd restart > pam_sss + krb5 > > The message is being held because: > >The message is not from a list member > > At your convenience, visit your dashboard to approve or deny the > request. > > From: cedric hottier> Subject: Re: [SSSD-users] Re: credentials cache cleared at sssd restart > pam_sss + krb5 > Date: 1 May 2018 at 23:30:53 CEST > To: sssd-users@lists.fedorahosted.org > > > Dear Jakub, > Thanks a lot for your workaround. It works perfectly now. > > I guess that fixing this issue is not a priority as the proxy_lib_names=files > works fine. > I did not find any bug report regarding this issue, and I think it would be > worth to create one with your workaround . Well, it’s causing issues, so it’s a priority :) the bug link is https://pagure.io/SSSD/sssd/issue/3591 > Regards > Cedric > - > > > > From: sssd-users-requ...@lists.fedorahosted.org > Subject: confirm 87d041498495ab1b6d4a693f3d23ef672262cce9 > Date: 1 May 2018 at 23:30:59 CEST > > > If you reply to this message, keeping the Subject: header intact, > Mailman will discard the held message. Do this if the message is > spam. If you reply to this message and include an Approved: header > with the list password in it, the message will be approved for posting > to the list. The Approved: header can also appear in the first line > of the body of the reply. > ___ sssd-users mailing list -- sssd-users@lists.fedorahosted.org To unsubscribe send an email to sssd-users-le...@lists.fedorahosted.org
[SSSD-users] Re: credentials cache cleared at sssd restart pam_sss + krb5
Dear Jakub, Thanks a lot for your workaround. It works perfectly now. I guess that fixing this issue is not a priority as the proxy_lib_names=files works fine. I did not find any bug report regarding this issue, and I think it would be worth to create one with your workaround . Regards Cedric - ___ sssd-users mailing list -- sssd-users@lists.fedorahosted.org To unsubscribe send an email to sssd-users-le...@lists.fedorahosted.org