> On 14 Apr 2019, at 08:54, Alexander Bokovoy via FreeIPA-users
> wrote:
>
>>
>> It does work on the FreeIPA server all the time but fails on clients,
>> if I lookup the conflicting group before the use on the client it also
>> woks.
> This is SSSD-specific issue. Sometimes it doesn't have enough
> information to deduce what is being looked up -- a group or a user and
> has to ask for either. Perhaps, it might be optimized to check whether
> there are two results returned and they are of different nature, as
> opposed to multiple results of the same nature returned which clearly
> would be a wrong result.
>
> May be you can open a bug against SSSD?
Thank you, this leave us with the same restrictions with one namespace for
users and groups on the IPA side as in windows and will prevent our migration.
I will have a bug filed against SSSD but I guess it will take some time to get
this fixed.
Regards
Henrik
___
FreeIPA-users mailing list -- freeipa-users@lists.fedorahosted.org
To unsubscribe send an email to freeipa-users-le...@lists.fedorahosted.org
Fedora Code of Conduct: https://getfedora.org/code-of-conduct.html
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives:
https://lists.fedorahosted.org/archives/list/freeipa-users@lists.fedorahosted.org