[SSSD-users] Re: 'no primary group ID provided' when trying to use ldap mode against AD

2017-04-24 Thread Jakub Hrozek
On Mon, Apr 24, 2017 at 06:45:20PM -, maar...@datastorm.nl wrote: > Hello, > > I am desperately looking for a working sssd.conf file for LDAP AD interaction. > Is the working sssd.conf from Daniel Hermans somewhere to be found? It looks like he just added: ldap_user_primary_group = primar

[SSSD-users] Re: 'no primary group ID provided' when trying to use ldap mode against AD

2017-04-24 Thread maarten
Hello, I am desperately looking for a working sssd.conf file for LDAP AD interaction. Is the working sssd.conf from Daniel Hermans somewhere to be found? Please help, Thanks, Maarten ___ sssd-users mailing list -- sssd-users@lists.fedorahosted.org To

[SSSD-users] Re: 'no primary group ID provided' when trying to use ldap mode against AD

2016-09-01 Thread Jakub Hrozek
On Thu, Sep 01, 2016 at 10:13:01AM +0100, John Hodrien wrote: > On Mon, 29 Aug 2016, Jakub Hrozek wrote: > > > btw one more remark. Even if you can't join the client to AD and have to > > resort to id_provider=ldap there is nothing preventing you from using: > >auth_provider=krb5 > > at least

[SSSD-users] Re: 'no primary group ID provided' when trying to use ldap mode against AD

2016-09-01 Thread John Hodrien
On Mon, 29 Aug 2016, Jakub Hrozek wrote: btw one more remark. Even if you can't join the client to AD and have to resort to id_provider=ldap there is nothing preventing you from using: auth_provider=krb5 at least as long as the KDC is reachable.. Although without a system keytab (typically

[SSSD-users] Re: 'no primary group ID provided' when trying to use ldap mode against AD

2016-08-31 Thread Jakub Hrozek
On Wed, Aug 31, 2016 at 04:36:58AM -, Daniel Hermans wrote: > Thanks Jakub, > > I added as you suggested and can login! Thanks so much! Couldn't find this > option in man pages etc..what does this magic flag do exactly? Ooops, I'm sorry, this is a manpage bug. I will fix the man pages.. (I'm

[SSSD-users] Re: 'no primary group ID provided' when trying to use ldap mode against AD

2016-08-30 Thread Daniel Hermans
Thanks Jakub, I added as you suggested and can login! Thanks so much! Couldn't find this option in man pages etc..what does this magic flag do exactly? the primary group ( a mash of some large number with 513 on the end - Domain Users ) is coming up numeric - would you recommend a local /etc/gr

[SSSD-users] Re: 'no primary group ID provided' when trying to use ldap mode against AD

2016-08-29 Thread Jakub Hrozek
On Mon, Aug 29, 2016 at 03:36:40PM +0200, Jakub Hrozek wrote: > On Mon, Aug 29, 2016 at 09:07:06AM +0200, Jakub Hrozek wrote: > > On Sat, Aug 27, 2016 at 06:06:17AM -, Daniel Hermans wrote: > > > Hi, > > > i'd like to use sssd in ldap mode against Active Directory so I have > > > defined: > >

[SSSD-users] Re: 'no primary group ID provided' when trying to use ldap mode against AD

2016-08-29 Thread Jakub Hrozek
On Mon, Aug 29, 2016 at 09:07:06AM +0200, Jakub Hrozek wrote: > On Sat, Aug 27, 2016 at 06:06:17AM -, Daniel Hermans wrote: > > Hi, > > i'd like to use sssd in ldap mode against Active Directory so I have > > defined: > > id_provider = ldap > > auth_provider = ldap > > > > Yes krb5 would be

[SSSD-users] Re: 'no primary group ID provided' when trying to use ldap mode against AD

2016-08-29 Thread Jakub Hrozek
On Sat, Aug 27, 2016 at 06:06:17AM -, Daniel Hermans wrote: > Hi, > i'd like to use sssd in ldap mode against Active Directory so I have defined: > id_provider = ldap > auth_provider = ldap > > Yes krb5 would be better but i only have a BIND account and cannot add > computer objects. > This