On 11/16/2012 07:12 PM, Paul B. Henson wrote:
> On 11/16/2012 12:55 PM, Dmitri Pal wrote:
>
>> Would moving such accounts into local sssd provider help?
>
> Hmm, that would be similar in concept to proxying nss_files, although
> certainly less kludgy on the sss side. However, we have existing
> procedures and scripts which currently assume local service accounts
> exist in the /etc/passwd file, I'd have to track all of those down and
> make sure they were updated. And there'd still be "local" accounts in
> /etc/passwd added by packages and whatnot, resulting in multiple
> locations for local users and possible uid allocation issues.
>
> So, no, I don't think that's a workable option, at least not one whose
> effort is low enough to make it worth replacing pam_listfile though.
>
> Thanks for the suggestion...

Oh well.

Please file a ticket.
However I am not sure when we would be able to get to it.
Looking at our backlog it is definitely something that we would not be
able to implement soon.
You would have to use a workaround for some time, sorry.

Thanks
Dmitri

>
>
> _______________________________________________
> sssd-devel mailing list
> sssd-devel@lists.fedorahosted.org
> https://lists.fedorahosted.org/mailman/listinfo/sssd-devel


-- 
Thank you,
Dmitri Pal

Sr. Engineering Manager for IdM portfolio
Red Hat Inc.


-------------------------------
Looking to carve out IT costs?
www.redhat.com/carveoutcosts/



_______________________________________________
sssd-devel mailing list
sssd-devel@lists.fedorahosted.org
https://lists.fedorahosted.org/mailman/listinfo/sssd-devel

Reply via email to