#2393 failover: enable different dns discovery domain for AD subdomains
Opened 4 years ago by pbrezina. Modified 2 years ago

Current SRV AD plugin does not allow to set different dns discovery domains for trusted subdomains if dns_discovery_domain is set in sssd.conf. Therefore if the option is present, we always look up directory controllers in the domain configured in dns_discovery_domain. This means that the obtained servers for subdomains are wrong and we are not able to look up users and groups (unless the found dc is also gc).

This would be nice to have, but requires quite a bit of refactoring of the failover code.

This would be nice to have, but the changes required for the failover and responder refactoring are not scoped for the 1.14 release.

2 years ago

