Ticket #1590 (closed defect: fixed)

Opened 18 months ago

Last modified 18 months ago

sssd does not resolve group names from AD

Reported by: dpal Owned by: jhrozek
Priority: major Milestone: SSSD 1.9.3
Component: SSSD Version:
Keywords: Cc:
Blocked By: Blocking:
Tests Updated: no Coverity Bug:
Patch Submitted: no Red Hat Bugzilla: 867874
Design link:
Feature Milestone:
Design review: no Fedora test page:
Chosen: Candidate to push out:
Release Notes:

Description

https://bugzilla.redhat.com/show_bug.cgi?id=867874 (Fedora)

Description of problem:
When a system is an AD member, configured for the Active Directory Test Day for
Fedora 18[1], I can log into the system with an AD account, so the username is
resolved. The name of the primary group of the user, however ('Domain Users')
is not resolved.

Version-Release number of selected component (if applicable):
1.9.2-1.fc18

How reproducible:


Steps to Reproduce:
1. Join a system to an AD domain, like for the FTD, see [1]
2. Log in as a user from AD
3. Try and resolve groups

Actual results:
Output of id is like this:
$ id
uid=592801111(NONTOONYT\testuser03) gid=592800513 groups=592800513
context=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023

Expected results:
Output of id to be like this:
$ id
uid=1001(localuser) gid=1002(localuser) groups=1002(localuser),1001(localgroup)
context=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023

Additional info:

[1]
https://fedoraproject.org/wiki/QA:Testcase_Active_Directory_realmd_join_sssd

Change History

comment:1 Changed 18 months ago by jhrozek

  • Design review unset
  • Owner changed from somebody to jhrozek
  • Status changed from new to assigned
  • Tests Updated unset

comment:2 Changed 18 months ago by jhrozek

  • Status changed from assigned to closed
  • Resolution set to fixed
  • Milestone changed from NEEDS_TRIAGE to SSSD 1.9.3
Note: See TracTickets for help on using tickets.