yes, that's what i understood in the logs, the thing is that i don't know what 
security filter i can add for Linux clients to be able to dowload the GPO's.

----- Mail original -----
De: "Michal Židek" <mzi...@redhat.com>
À: sssd-users@lists.fedorahosted.org
Envoyé: Vendredi 9 Juin 2017 11:40:55
Objet: [SSSD-users] Re: GPO's not applying to Linux clients

On 06/07/2017 10:49 AM, François MUTSHE wrote:
> Here is my sssd_domain.log
> 
> sssd-users mailing list -- sssd-users@lists.fedorahosted.org
> To unsubscribe send an email to sssd-users-le...@lists.fedorahosted.org
> 
> 
> 
> _______________________________________________
> sssd-users mailing list -- sssd-users@lists.fedorahosted.org
> To unsubscribe send an email to sssd-users-le...@lists.fedorahosted.org
> 

Hi,

sorry for delayed answer.

Unfortunately there does not seem to be anything wrong going on it the
logs. The only thing I can think of is that samba dc has different
defaults for the security filter then normal AD and it filters out
non windows clients by default.

The reason why gpo_child log is empty is that SSSD did not try to
download any GPOs (all were filtered out).

I never installed samba dc, so I do not know how to tweak the GPO 
security filter there. Sorry.

Michal
_______________________________________________
sssd-users mailing list -- sssd-users@lists.fedorahosted.org
To unsubscribe send an email to sssd-users-le...@lists.fedorahosted.org
_______________________________________________
sssd-users mailing list -- sssd-users@lists.fedorahosted.org
To unsubscribe send an email to sssd-users-le...@lists.fedorahosted.org

Reply via email to