IPA currently uses an range with 200k UIDs (and GIDs) for its domain user, if not a different range is given with ipa-server-install
If a trust is created to a different domain UIDs (and GIDs) have to be reserved for this domain. To avoid conflicts IPA needs a method to reserve UID-ranges and to find out if a range is currently taken of not.
In #1298 an extend based scheme to handle this is described. If this is suitable it should be implemented or a better methods should be found.
Move to January, I'll work on this during first weeks new year once trusts code is stable.
Reassign to Sumit.
Fixed by - ab6097b - 0350b5e - e809802 - fbebe82 - bdb9951 - 50ebd1a - d5fe029
Metadata Update from @sbose: - Issue assigned to sbose - Issue set to the milestone: FreeIPA 3.0 Trust Effort - 2012/06
Login to comment on this ticket.