On Fri, May 22, 2020 at 04:07:08PM -0700, Suchismita Panda via FreeIPA-users wrote:
Hi,
We are trying to configure our FreeIPA environment. We are using freeipa-client in both Ubuntu 18 and Ubuntu 16 servers. The FreeIPA server has one way trust to our AD. We have the domain name resolution order setup in the FreeIPA server. The AD users are able to ssh login to Ubuntu 18 fluently. But in Ubuntu 16, the AD user ssh login works only with domain name extension for AD users and fails with short name. Inside the Ubuntu 16 client, AD user lookup as well fails for short name, but works with domain name extension.
Hi,
which SSSD version are you using on Ubuntu 16. It looks like it has sssd-1.13.4 by default which does not support the domain name resolution order feature.
bye, Sumit
Is there any extra configuration needed in sssd.conf other than the default configuration generated by freeipa-client?
TIA
FreeIPA-users mailing list -- freeipa-users@lists.fedorahosted.org To unsubscribe send an email to freeipa-users-leave@lists.fedorahosted.org Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedorahosted.org/archives/list/freeipa-users@lists.fedorahoste...