This patch adds support for resolving external members from trusted domain. It means 'ipa group-add-member --external' can accept not only SID but also user or group specifier in the form DOM\name or name@domain.
The code is highly experimental. https://fedorahosted.org/freeipa/ticket/3211 Alexander Bokovoy (1): Resolve external members from trusted domain via Global Catalog ipalib/plugins/group.py | 32 +++++---- ipaserver/dcerpc.py | 172 +++++++++++++++++++++++++++++++++++++++++---- ipaserver/plugins/ldap2.py | 3 + 3 files changed, 181 insertions(+), 26 deletions(-) -- 1.7.12.1 _______________________________________________ Freeipa-devel mailing list Freeipa-devel@redhat.com https://www.redhat.com/mailman/listinfo/freeipa-devel