is there a restriction on what groups 389ds will return for user root? my ldap tree is working fine, all the normal users seem to be in the right groups as returned by getent/id, but when i query root it doesn't return any group info. a google search didn't pull anything immediately relevant, but i'm still looking
thanks
What's in your /etc/nsswitch.conf?
On 15 Nov 2024, at 02:20, Michael DiDomenico via 389-users 389-users@lists.fedoraproject.org wrote:
is there a restriction on what groups 389ds will return for user root? my ldap tree is working fine, all the normal users seem to be in the right groups as returned by getent/id, but when i query root it doesn't return any group info. a google search didn't pull anything immediately relevant, but i'm still looking
thanks
389-users mailing list -- 389-users@lists.fedoraproject.org To unsubscribe send an email to 389-users-leave@lists.fedoraproject.org Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/389-users@lists.fedoraproject.... Do not reply to spam, report it: https://pagure.io/fedora-infrastructure/new_issue
thanks for replying, it turns out this is an artifact of sssd not passing the root queries along to ldap. not an oddity with 389ds
On Thu, Nov 14, 2024 at 7:53 PM William Brown wbrown@suse.de wrote:
What's in your /etc/nsswitch.conf?
On 15 Nov 2024, at 02:20, Michael DiDomenico via 389-users 389-users@lists.fedoraproject.org wrote:
is there a restriction on what groups 389ds will return for user root? my ldap tree is working fine, all the normal users seem to be in the right groups as returned by getent/id, but when i query root it doesn't return any group info. a google search didn't pull anything immediately relevant, but i'm still looking
thanks
389-users mailing list -- 389-users@lists.fedoraproject.org To unsubscribe send an email to 389-users-leave@lists.fedoraproject.org Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/389-users@lists.fedoraproject.... Do not reply to spam, report it: https://pagure.io/fedora-infrastructure/new_issue
-- Sincerely,
William Brown
Senior Software Engineer, Identity and Access Management SUSE Labs, Australia
389-users@lists.fedoraproject.org