Public bug reported:

Ecryptfs encryption does not work for domain users in an active
directory domain, integrated with likewise open / powerbroker for the
following reasons:

- domain user names contain backslashes (DOMAIN\user.name). Ecryptfs checks for 
valid usernames, which mustn't contain backslashes
- There is no pam hook which automatically activates encryption of the home 
directory of new domain users


Steps to reproduce:
- Set up AD controller, e.g. via samba4
- Set up ecryptfs-utils on an ubuntu machine
- Add ubuntu machine to domain with likewise open / powerbroker
- Login with domain user

Result:
- Home directory is unencrypted

Additional steps:
- Manually encrypt home directory of domain user

Additional result:
- On login decryption fails with message: "Username has unsupported characters"


Expected result:
Home directories of domain users can easily be encrypted and decrypted with 
ecryptfs

** Affects: ecryptfs-utils (Ubuntu)
     Importance: Undecided
         Status: New

-- 
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1406940

Title:
  ecryptfs does not work for domain users (AD, likewise/powerbroker)

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/ecryptfs-utils/+bug/1406940/+subscriptions

-- 
ubuntu-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

Reply via email to