[SSSD-users] Re: Experiencing a bug on users' name and ID

2018-05-02 Thread Asif Iqbal
On Tue, Apr 24, 2018 at 1:35 PM, Asif Iqbal  wrote:

>
>
> On Wed, Apr 18, 2018 at 10:49 AM, Sumit Bose  wrote:
>
>> > [.. stripped for brevity ..]
>> > > >
>> > > Hi Sumit et al.,
>> > >
>> > > Still like some help to resolve this.
>> >
>> > Thank you for the logs. Unfortunately I cannot see the reason in the
>> > logs why it does not work. I'll have to replicate your setup and try to
>> > reproduce the issue and will send my findings in a few days.
>>
>> I was able to reproduce the issue if I use a string attribute with a
>> leading white-space as UID attribute. I have to think a bit about how
>> this can be fixed in a general way.
>>
>> bye,
>> Sumit
>>
>>
> Hi Sumit,
>
> Let me know if you need something for me. I am still looking for a
> workaround
>
> Appreciate your help!
>
>

Hi Sumit,

Were you able to find a workaround for this?

Appreciate your help


-- 
Asif Iqbal
PGP Key: 0xE62693C5 KeyServer: pgp.mit.edu
A: Because it messes up the order in which people normally read text.
Q: Why is top-posting such a bad thing?
___
sssd-users mailing list -- sssd-users@lists.fedorahosted.org
To unsubscribe send an email to sssd-users-le...@lists.fedorahosted.org


[SSSD-users] Re: credentials cache cleared at sssd restart pam_sss + krb5

2018-05-02 Thread Lukas Slebodnik
On (01/05/18 22:52), Jakub Hrozek wrote:
>On Tue, May 01, 2018 at 01:53:48PM +0200, cedric hottier wrote:
>> Dear sssd users,
>> 
>> I observe that at each sssd start, the credentials cache is cleared. Is it
>> an expected behavior ?
>> If yes, is there a parameter to make this caching permanent (or at least
>> not erased at each sssd restart ).
>> My issue is that If I reboot my laptop without connection to my KDC, I am
>> not able to log due to [sysdb_cache_auth] cached credentials not available.
>> 
>> here is my config : Debian testing / SSD version : 1.16.1
>> 
>> /etc/sssd/sssd.conf :
>> [sssd]
>> services = nss, pam, ifp
>> domains = ECCM.LAN
>> 
>> [pam]
>> pam_verbosity = 2
>> offline_credentials_expiration = 0
>> 
>> /etc/sssd/conf.d/01_ECCM_LAN.conf
>> [domain/ECCM.LAN]
>> debug_level = 10
>> id_provider = files
>
>I'm afraid this is a known bug with id_provider=files. I was looking
>into fixing this last week, but I don't have a patch yet.
>
Here is an upstream ticket
https://pagure.io/SSSD/sssd/issue/3591

>In the meantime, you can use:
>id_provider=proxy
>proxy_lib_name=files
>
>I think that should work in the meantime..
>

That should work with 1.16.1.
Older versions might hit https://pagure.io/SSSD/sssd/issue/3590

LS
___
sssd-users mailing list -- sssd-users@lists.fedorahosted.org
To unsubscribe send an email to sssd-users-le...@lists.fedorahosted.org


[SSSD-users] Re: sssd-users@lists.fedorahosted.org post from ced...@hottier.com requires approval

2018-05-02 Thread Jakub Hrozek


> On 1 May 2018, at 23:30, ad...@fedoraproject.org wrote:
> 
> As list administrator, your authorization is requested for the
> following mailing list posting:
> 
>List:sssd-users@lists.fedorahosted.org
>From:ced...@hottier.com
>Subject: Re: [SSSD-users] Re: credentials cache cleared at sssd restart 
> pam_sss + krb5
> 
> The message is being held because:
> 
>The message is not from a list member
> 
> At your convenience, visit your dashboard to approve or deny the
> request.
> 
> From: cedric hottier 
> Subject: Re: [SSSD-users] Re: credentials cache cleared at sssd restart 
> pam_sss + krb5
> Date: 1 May 2018 at 23:30:53 CEST
> To: sssd-users@lists.fedorahosted.org
> 
> 
> Dear Jakub,
> Thanks a lot for your workaround. It works perfectly now.
> 
> I guess that fixing this issue is not a priority as the proxy_lib_names=files 
> works fine.
> I did not find any bug report regarding this issue, and I think it would be 
> worth to create one with your workaround .

Well, it’s causing issues, so it’s a priority :) the bug link is 
https://pagure.io/SSSD/sssd/issue/3591

> Regards
> Cedric
> - 
> 
> 
> 
> From: sssd-users-requ...@lists.fedorahosted.org
> Subject: confirm 87d041498495ab1b6d4a693f3d23ef672262cce9
> Date: 1 May 2018 at 23:30:59 CEST
> 
> 
> If you reply to this message, keeping the Subject: header intact,
> Mailman will discard the held message.  Do this if the message is
> spam.  If you reply to this message and include an Approved: header
> with the list password in it, the message will be approved for posting
> to the list.  The Approved: header can also appear in the first line
> of the body of the reply.
> 
___
sssd-users mailing list -- sssd-users@lists.fedorahosted.org
To unsubscribe send an email to sssd-users-le...@lists.fedorahosted.org


[SSSD-users] Re: credentials cache cleared at sssd restart pam_sss + krb5

2018-05-02 Thread cedric hottier
Dear Jakub,
Thanks a lot for your workaround. It works perfectly now.

I guess that fixing this issue is not a priority as the
proxy_lib_names=files works fine.
I did not find any bug report regarding this issue, and I think it would be
worth to create one with your workaround .

Regards
Cedric
-
___
sssd-users mailing list -- sssd-users@lists.fedorahosted.org
To unsubscribe send an email to sssd-users-le...@lists.fedorahosted.org