[03/Feb/2022:02:00:35.465687122 +0500] - ERR - sidgen_task_thread - [file ipa_sidgen_task.c, line 194]: Sidgen task starts ... [03/Feb/2022:02:00:35.966385266 +0500] - ERR - find_sid_for_ldap_entry - [file ipa_sidgen_common.c, line 522]: Cannot convert Posix ID [1196400016] into an unused SID. [03/Feb/2022:02:00:35.967934170 +0500] - ERR - do_work - [file ipa_sidgen_task.c, line 154]: Cannot add SID to existing entry. [03/Feb/2022:02:00:35.968879253 +0500] - ERR - sidgen_task_thread - [file ipa_sidgen_task.c, line 199]: Sidgen task finished [32]. [03/Feb/2022:02:00:40.829465629 +0500] - ERR - schema-compat-plugin - warning: no entries set up under cn=ng, cn=compat,dc=example,dc=com [03/Feb/2022:02:00:42.908554518 +0500] - ERR - schema-compat-plugin - warning: no entries set up under cn=computers, cn=compat,dc=example,dc=com [03/Feb/2022:02:00:42.910160704 +0500] - ERR - schema-compat-plugin - Finished plugin initialization. From: Alexander Bokovoy On to, 03 helmi 2022, code bugs wrote: > # ipa config-mod --enable-sid --add-sids > > Executes without error. But User still has no objectclass ipaNTUserAttrs > and ipaNTSecurityIdentifier attribute. can you check dirsrv's error log to see if sidgen plugin considers something problematic? It would be /var/log/dirsrv/slapd-<INSTANCE>/errorlog. -- / Alexander Bokovoy Sr. Principal Software Engineer Security / Identity Management Engineering Red Hat Limited, Finland |
_______________________________________________ FreeIPA-users mailing list -- freeipa-users@lists.fedorahosted.org To unsubscribe send an email to freeipa-users-le...@lists.fedorahosted.org Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedorahosted.org/archives/list/freeipa-users@lists.fedorahosted.org Do not reply to spam on the list, report it: https://pagure.io/fedora-infrastructure