URL: https://github.com/SSSD/sssd/pull/522
Title: #522: Prepare SSSD to support IPA in trust to Samba AD

abbra commented:
"""
@jhrozek, @sumit-bose I've updated this pull request with a new code that adds 
a missing `cn=trusts,$SUFFIX` base after a user base is parsed. I find this 
approach cleaner than the previous one and it also avoids issues with parsing 
the option.

To test it, you need my 
https://github.com/abbra/freeipa/tree/trust-one-way-improvements FreeIPA 
branch. With the SSSD changes from this pull request and FreeIPA patches from 
trust-one-way-improvements branch I'm able to establish:
 - one way trust with shared secret from Windows Server side
 - trust to Samba AD

So I guess this is actually a good start.

A draft design page is https://cloud.vda.li/hackmd/s/Sy-rkrU-7
"""

See the full comment at 
https://github.com/SSSD/sssd/pull/522#issuecomment-401338875
_______________________________________________
sssd-devel mailing list -- sssd-devel@lists.fedorahosted.org
To unsubscribe send an email to sssd-devel-le...@lists.fedorahosted.org
Fedora Code of Conduct: https://getfedora.org/code-of-conduct.html
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: 
https://lists.fedoraproject.org/archives/list/sssd-devel@lists.fedorahosted.org/message/WTKYBWQUZAAKABV43EVDBHU5ALI4GPYC/

Reply via email to