Turns out the above doesn't work out too well, as the patch depends on getpwnam_r(), a glibc function which then ends up using libnss-ldap. Tried a few things, but it didn't help the hang.
A less intrusive patch will be to have an initscript run on shutdown which edits /etc/ldap.conf based on the value of nss_initgroups_minimum_uid. ** Changed in: libnss-ldap (Ubuntu) Status: Triaged => Fix Committed -- libnss-ldap: calls to initgroups() causes boot to hang when using 'bind_policy hard' https://bugs.launchpad.net/bugs/155947 You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. -- ubuntu-bugs mailing list ubuntu-bugs@lists.ubuntu.com https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs