Hi, Thanks for the response.
Yes as you predicted it also works perfectly if i: authconfig --enablesssd --enablesssdauth --enablelocauthorize --enablemkhomedir --update --nostart [copy over full config] service sssd start ; chkconfig sssd on
Thankyou!!
I now have full LDAP auth against a domain that has no/inconsistent posix attributes ( using ldap_id_mapping = true )
only thing I had to do was use a GID override: override_gid = 10000
and add a manual group to /etc/group to stop this warning: id: cannot find name for group ID 200513
Any thoughts on this topic?
as I guess the