Hey Guy's,
After implementing the LDAP_MATCHING_RULE_IN_CHAIN , we're seeing these messages in the sssd domain log file:
(Tue Jul 24 12:59:41 2018) [sssd[be[MYDOM]]] [child_sig_handler] (0x0020): child [17444] failed with status [1].
(Tue Jul 24 12:59:41 2018) [sssd[be[MYDOM]]] [child_sig_handler] (0x0020): child [17451] failed with status [1].
(Tue Jul 24 12:59:41 2018) [sssd[be[MYDOM]]] [child_sig_handler] (0x0020): child [17457] failed with status [1].
(Tue Jul 24 12:59:41 2018) [sssd[be[MYDOM]]] [child_sig_handler] (0x0020): child [17463] failed with status [1].
(Tue Jul 24 12:59:42 2018) [sssd[be[MYDOM]]] [child_sig_handler] (0x0020): child [17469] failed with status [1].
(Tue Jul 24 12:59:42 2018) [sssd[be[MYDOM]]] [child_sig_handler] (0x0020): child [17477] failed with status [1].
(Tue Jul 24 12:59:42 2018) [sssd[be[MYDOM]]] [child_sig_handler] (0x0020): child [17486] failed with status [1].
(Tue Jul 24 12:59:42 2018) [sssd[be[MYDOM]]] [child_sig_handler] (0x0020): child [17493] failed with status [1].
(Tue Jul 24 12:59:42 2018) [sssd[be[MYDOM]]] [child_sig_handler] (0x0020): child [17500] failed with status [1].
(Tue Jul 24 12:59:42 2018) [sssd[be[MYDOM]]] [child_sig_handler] (0x0020): child [17506] failed with status [1].
(Tue Jul 24 12:59:42 2018) [sssd[be[MYDOM]]] [child_sig_handler] (0x0020): child [17512] failed with status [1].
(Tue Jul 24 12:59:42 2018) [sssd[be[MYDOM]]] [child_sig_handler] (0x0020): child [17519] failed with status [1].
(Tue Jul 24 12:59:42 2018) [sssd[be[MYDOM]]] [child_sig_handler] (0x0020): child [17525] failed with status [1].
(Tue Jul 24 12:59:42 2018) [sssd[be[MYDOM]]] [child_sig_handler] (0x0020): child [17532] failed with status [1].
(Tue Jul 24 12:59:42 2018) [sssd[be[MYDOM]]] [child_sig_handler] (0x0020): child [17540] failed with status [1].
(Tue Jul 24 13:12:11 2018) [sssd[be[MYDOM]]] [child_sig_handler] (0x0020): child [34068] failed with status [2].
(Tue Jul 24 13:13:54 2018) [sssd[be[MYDOM]]] [sdap_save_grpmem] (0x0020): Group members are ignored, nothing to do. If you see this message it might indicate an error in the group processing logic.
(Tue Jul 24 13:15:39 2018) [sssd[be[MYDOM]]] [sdap_save_grpmem] (0x0020): Group members are ignored, nothing to do. If you see this message it might indicate an error in the group processing logic.
(Tue Jul 24 13:15:39 2018) [sssd[be[MYDOM]]] [sdap_save_grpmem] (0x0020): Group members are ignored, nothing to do. If you see this message it might indicate an error in the group processing logic.
(Tue Jul 24 13:16:07 2018) [sssd[be[MYDOM]]] [sdap_save_grpmem] (0x0020): Group members are ignored, nothing to do. If you see this message it might indicate an error in the group processing logic.
(Tue Jul 24 13:16:07 2018) [sssd[be[MYDOM]]] [sdap_save_grpmem] (0x0020): Group members are ignored, nothing to do. If you see this message it might indicate an error in the group processing logic.
(Tue Jul 24 13:17:18 2018) [sssd[be[MYDOM]]] [ad_get_slave_domain_done] (0x0020): Unable to lookup slave domain data [110]: Connection timed out
(Tue Jul 24 13:19:20 2018) [sssd[be[MYDOM]]] [sdap_save_grpmem] (0x0020): Group members are ignored, nothing to do. If you see this message it might indicate an error in the group processing logic.
(Tue Jul 24 13:19:20 2018) [sssd[be[MYDOM]]] [sdap_save_grpmem] (0x0020): Group members are ignored, nothing to do. If you see this message it might indicate an error in the group processing logic.
(Tue Jul 24 13:19:20 2018) [sssd[be[MYDOM]]] [sdap_save_grpmem] (0x0020): Group members are ignored, nothing to do. If you see this message it might indicate an error in the group processing logic.
(Tue Jul 24 13:19:20 2018) [sssd[be[MYDOM]]] [sdap_save_grpmem] (0x0020): Group members are ignored, nothing to do. If you see this message it might indicate an error in the group processing logic.
(Tue Jul 24 13:19:20 2018) [sssd[be[MYDOM]]] [sdap_save_grpmem] (0x0020): Group members are ignored, nothing to do. If you see this message it might indicate an error in the group processing logic.
(Tue Jul 24 13:19:20 2018) [sssd[be[MYDOM]]] [sdap_save_grpmem] (0x0020): Group members are ignored, nothing to do. If you see this message it might indicate an error in the group processing logic.
ad_access_filter = DOM:MYDOM:(|(memberOf=CN=group01,OU=Groups,OU=MYOU,DC=MYDOM,DC=COM)(memberOf:1.2.840.113556.1.4.1941:=CN=group02,OU=Groups,OU=MYOU,DC=MYDOM,DC=COM))
python2-sssdconfig-1.15.3-0.el6.noarch
sssd-ldap-1.15.3-0.el6.x86_64
sssd-ad-1.15.3-0.el6.x86_64
sssd-ipa-1.15.3-0.el6.x86_64
sssd-1.15.3-0.el6.x86_64
sssd-krb5-common-1.15.3-0.el6.x86_64
sssd-krb5-1.15.3-0.el6.x86_64
sssd-common-pac-1.15.3-0.el6.x86_64
sssd-common-1.15.3-0.el6.x86_64
sssd-client-1.15.3-0.el6.x86_64
sssd-proxy-1.15.3-0.el6.x86_64
We're not using NFS NFS at all here. Did a number of searches but wasn't able to find out more online. Has anyone encountered the same and nudge me further along?
Authentication works and we can login however even with DEBUG LEVEL at 10, that's pretty much all that's printed in the above log file.
sssd-users@lists.fedorahosted.org