On 11/16/2012 07:12 PM, Paul B. Henson wrote: > On 11/16/2012 12:55 PM, Dmitri Pal wrote: > >> Would moving such accounts into local sssd provider help? > > Hmm, that would be similar in concept to proxying nss_files, although > certainly less kludgy on the sss side. However, we have existing > procedures and scripts which currently assume local service accounts > exist in the /etc/passwd file, I'd have to track all of those down and > make sure they were updated. And there'd still be "local" accounts in > /etc/passwd added by packages and whatnot, resulting in multiple > locations for local users and possible uid allocation issues. > > So, no, I don't think that's a workable option, at least not one whose > effort is low enough to make it worth replacing pam_listfile though. > > Thanks for the suggestion...
Oh well. Please file a ticket. However I am not sure when we would be able to get to it. Looking at our backlog it is definitely something that we would not be able to implement soon. You would have to use a workaround for some time, sorry. Thanks Dmitri > > > _______________________________________________ > sssd-devel mailing list > sssd-devel@lists.fedorahosted.org > https://lists.fedorahosted.org/mailman/listinfo/sssd-devel -- Thank you, Dmitri Pal Sr. Engineering Manager for IdM portfolio Red Hat Inc. ------------------------------- Looking to carve out IT costs? www.redhat.com/carveoutcosts/ _______________________________________________ sssd-devel mailing list sssd-devel@lists.fedorahosted.org https://lists.fedorahosted.org/mailman/listinfo/sssd-devel