[SSSD-users] Re: sssd.conf sections only work if they reflect existing AD domain, why?

2018-08-31 Thread Daniele Raffo
If you're reading this via web, note that the @ sign got mutated to (a) in the simple_allow_groups configuration lines. ___ sssd-users mailing list -- sssd-users@lists.fedorahosted.org To unsubscribe send an email to sssd-users-le...@lists.fedorahosted.o

[SSSD-users] sssd.conf sections only work if they reflect existing AD domain, why?

2018-08-31 Thread Daniele Raffo
Hello, I'm trying to define two sssd groups in order to assign a different login shell to AD users belonging to two different AD groups in our domain FOOBAR.GLOBAL. However, all users are unable to login and get an error "Authentication failed". If I change a sssd section to [domain/FOOBAR.GLO