#1590 sssd does not resolve group names from AD

Created 4 years ago by dpal
Modified 3 months ago

https://bugzilla.redhat.com/show_bug.cgi?id=867874 (Fedora)

Description of problem:
When a system is an AD member, configured for the Active Directory Test Day for
Fedora 18[1], I can log into the system with an AD account, so the username is
resolved. The name of the primary group of the user, however ('Domain Users')
is not resolved.

Version-Release number of selected component (if applicable):
1.9.2-1.fc18

How reproducible:


Steps to Reproduce:
1. Join a system to an AD domain, like for the FTD, see [1]
2. Log in as a user from AD
3. Try and resolve groups

Actual results:
Output of id is like this:
$ id
uid=592801111(NONTOONYT\testuser03) gid=592800513 groups=592800513
context=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023

Expected results:
Output of id to be like this:
$ id
uid=1001(localuser) gid=1002(localuser) groups=1002(localuser),1001(localgroup)
context=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023

Additional info:

[1]
https://fedoraproject.org/wiki/QA:Testcase_Active_Directory_realmd_join_sssd

Fields changed

blockedby: =>
blocking: =>
coverity: =>
design: =>
design_review: => 0
feature_milestone: =>
fedora_test_page: =>
owner: somebody => jhrozek
status: new => assigned
testsupdated: => 0

  • master: a489aec7d328ad4fd8f420e1ac011c1fdc247465
  • sssd-1-9: 10e08f08a64fff15a914598f4561cdb14203dc37

milestone: NEEDS_TRIAGE => SSSD 1.9.3
resolution: => fixed
status: assigned => closed

3 months ago

Metadata Update from @dpal:
- Issue assigned to jhrozek
- Issue set to the milestone: SSSD 1.9.3

Login to comment on this ticket.

defect

SSSD

0

0

https://bugzilla.redhat.com/show_bug.cgi?id=867874

0

cancel