On Fri, 2019-05-17 at 14:19 +0000, SOLER SANGUESA Miguel via FreeIPA- users wrote: > Hello, > > I don't think it is a good idea to create a IPA posix group with the > same GID. I think the best option is adding the IPA user to the local > group as you tried to do. The only problem is that you used the short > username, and you need to use username@domain. Something like this: > # groupmems -g admins -a ri...@ipa.domain.com
You need to use the same name that is being use by the system. If a fully qualified name is being used then yes the fqdn needs to be in the group file, if shortnames are configured then the short name needs to be used. Simo. -- Simo Sorce Sr. Principal Software Engineer Red Hat, Inc _______________________________________________ FreeIPA-users mailing list -- freeipa-users@lists.fedorahosted.org To unsubscribe send an email to freeipa-users-le...@lists.fedorahosted.org Fedora Code of Conduct: https://getfedora.org/code-of-conduct.html List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedorahosted.org/archives/list/freeipa-users@lists.fedorahosted.org