[Simo Sorce]
> No this is actually accounted for in the pure rfc2307 scenario,
> where we do not lookup any user but just create fake entries from
> the memberUid attribute of the group.

Good.

>> When trying to log in using sssd 1.2.1 for a user that is a member of
>> one of the large groups (25k members), logging in take several
>> minutes. :/
> 
> This should be fixed in latest releases.

I tested with 1.2.3, and the login was quick, but only the primary
group was fetched from LDAP.  None of the other groups showed up with
'id' after I logged in with a clean cache (reinstalled machine).  Not
quite sure if that was the intended behaviour, but it is unwanted for
us that want to use sssd with NFS. :)

I have yet to test 1.3.x to see if this new problem also exist there.

CC to my debian co-maintainer and co-worker here at the University of
Oslo.

Happy hacking,
-- 
Petter Reinholdtsen
_______________________________________________
sssd-devel mailing list
sssd-devel@lists.fedorahosted.org
https://fedorahosted.org/mailman/listinfo/sssd-devel

Reply via email to