URL: https://github.com/SSSD/sssd/pull/5241 Title: #5241: GPO: respect ad_gpo_implicit_deny when evaluation rules
pbrezina commented: """ Ok. My expectation is that if user is not in deny rules then he should be granted access with implicit_deny = False. But I can see that it can render "allow rules and no deny rules" useless. """
See the full comment at https://github.com/SSSD/sssd/pull/5241#issuecomment-679062658
sssd-devel@lists.fedorahosted.org