up, they do not show the secondary group.
So I guess I am wondering how do I get OSX access control to use the ALL
the info that it already sees from FreeIPA?
Thanks
Scott A
--
Scott Allen
Head of IT
The Embassy Visual Effects Inc.
4th Floor - 177 W 7th Avenue
Vancouver, B.C.
V5Y 1L8
604.696.686
.
On Thu, Jun 5, 2014 at 1:47 PM, Scott Allen
wrote:
> Hi,
> I didn't migrate the passwords. All users started with a new default on
> IPA.
> The new user foo doesn't exist on the AD system but can login successfully
> using IPA credentials on a migrated system.
>
20:37AM -0700, Scott Allen wrote:
> > Hi,
> > Having a particularly weird problem. We have moved from AD to freeIPA
> > recently and while there have been some bumps, most of the CentOS 6.2
> boxes
> > make the transition successfully. Some background.
> >
> >
modifyTimestamp entryusn"
[29/May/2014:10:42:09 -0700] conn=72 op=27 RESULT err=0 tag=101 nentries=1
etime=0
[29/May/2014:10:42:09 -0700] conn=72 op=28 SRCH
base="cn=emb_users,cn=groups,cn=accounts,dc=embassy,dc=vfx" scope=0
filter="(objectClass=*)" attrs="o