Public bug reported:
Ecryptfs encryption does not work for domain users in an active
directory domain, integrated with likewise open / powerbroker for the
following reasons:
- domain user names contain backslashes (DOMAIN\user.name). Ecryptfs checks for
valid usernames, which mustn't contain backslashes
- There is no pam hook which automatically activates encryption of the home
directory of new domain users
Steps to reproduce:
- Set up AD controller, e.g. via samba4
- Set up ecryptfs-utils on an ubuntu machine
- Add ubuntu machine to domain with likewise open / powerbroker
- Login with domain user
Result:
- Home directory is unencrypted
Additional steps:
- Manually encrypt home directory of domain user
Additional result:
- On login decryption fails with message: "Username has unsupported characters"
Expected result:
Home directories of domain users can easily be encrypted and decrypted with
ecryptfs
** Affects: ecryptfs-utils (Ubuntu)
Importance: Undecided
Status: New
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1406940
Title:
ecryptfs does not work for domain users (AD, likewise/powerbroker)
To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/ecryptfs-utils/+bug/1406940/+subscriptions
--
ubuntu-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs