I've got a case where "id <user>@AD-DOMAIN" hangs forever after partially resolving and I think it may because they are in way too many AD groups?

The 'id' command resolve the user but hangs before completing. There is a large amount of group data returned from the AD forest for this user and the 'id' command seems to pause/hang right at the 3024th character returned.

Looking for pointers / tips. I'm thinking the AD user is in way too many groups but I don't know if this is a real limit or what the limit may be. Any other reason why an 'id' command may start to work but hang before completion for an AD-defined user?

Regards,
Chris



--
Manage your subscription for the Freeipa-users mailing list:
https://www.redhat.com/mailman/listinfo/freeipa-users
Go to http://freeipa.org for more info on the project

Reply via email to