Am Mon, Jun 14, 2021 at 11:50:44AM -0000 schrieb iulian roman via FreeIPA-users: > Hello everybody, > > I have an IPA setup with AD trust configured and Trust View defined on the > IPA server. Everything works properly on Ubuntu 18 clients with sssd 1.16.1 > but it doesn't on Ubuntu 20 with sssd version 2.2.3. I can list /query the > AD accounts which are not part of the default Trust View, but not those > accounts which have the id overriden in the Trust View. > > Is that a known issue, or any idea what do I need to change /where to look ?
Hi, which attributes are you overriding? If you change the primary GID of a user you have to make sure that there is a group in AD with a matching GID or a group where the GID is overridden with this value. HTH bye, Sumit > _______________________________________________ > FreeIPA-users mailing list -- freeipa-users@lists.fedorahosted.org > To unsubscribe send an email to freeipa-users-le...@lists.fedorahosted.org > Fedora Code of Conduct: > https://docs.fedoraproject.org/en-US/project/code-of-conduct/ > List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines > List Archives: > https://lists.fedorahosted.org/archives/list/freeipa-users@lists.fedorahosted.org > Do not reply to spam on the list, report it: > https://pagure.io/fedora-infrastructure _______________________________________________ FreeIPA-users mailing list -- freeipa-users@lists.fedorahosted.org To unsubscribe send an email to freeipa-users-le...@lists.fedorahosted.org Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedorahosted.org/archives/list/freeipa-users@lists.fedorahosted.org Do not reply to spam on the list, report it: https://pagure.io/fedora-infrastructure