Hey Guy's,
After implementing the LDAP_MATCHING_RULE_IN_CHAIN , we're seeing these messages in the sssd domain log file:
(Tue Jul 24 12:59:41 2018) [sssd[be[MYDOM]]] [child_sig_handler] (0x0020): child [17444] failed with status [1].
(Tue Jul 24 12:59:41 2018) [sssd[be[MYDOM]]] [child_sig_handler] (0x0020): child [17451] failed with status [1].
(Tue Jul 24 12:59:41 2018) [sssd[be[MYDOM]]] [child_sig_handler] (0x0020): child [17457] failed with status [1].
(Tue Jul 24 12:59:41 2018) [sssd[be[MYDOM]]] [child_sig_handler] (0x0020): child [17463] failed with status [1].
(Tue Jul 24 12:59:42 2018) [sssd[be[MYDOM]]] [child_sig_handler] (0x0020): child [17469] failed with status [1].
(Tue Jul 24 12:59:42 2018) [sssd[be[MYDOM]]] [child_sig_handler] (0x0020): child [17477] failed with status [1].
(Tue Jul 24 12:59:42 2018) [sssd[be[MYDOM]]] [child_sig_handler] (0x0020): child [17486] failed with status [1].
(Tue Jul 24 12:59:42 2018) [sssd[be[MYDOM]]] [child_sig_handler] (0x0020): child [17493] failed with status [1].
(Tue Jul 24 12:59:42 2018) [sssd[be[MYDOM]]] [child_sig_handler] (0x0020): child [17500] failed with status [1].
(Tue Jul 24 12:59:42 2018) [sssd[be[MYDOM]]] [child_sig_handler] (0x0020): child [17506] failed with status [1].
(Tue Jul 24 12:59:42 2018) [sssd[be[MYDOM]]] [child_sig_handler] (0x0020): child [17512] failed with status [1].
(Tue Jul 24 12:59:42 2018) [sssd[be[MYDOM]]] [child_sig_handler] (0x0020): child [17519] failed with status [1].
(Tue Jul 24 12:59:42 2018) [sssd[be[MYDOM]]] [child_sig_handler] (0x0020): child [17525] failed with status [1].
(Tue Jul 24 12:59:42 2018) [sssd[be[MYDOM]]] [child_sig_handler] (0x0020): child [17532] failed with status [1].
(Tue Jul 24 12:59:42 2018) [sssd[be[MYDOM]]] [child_sig_handler] (0x0020): child [17540] failed with status [1].
(Tue Jul 24 13:12:11 2018) [sssd[be[MYDOM]]] [child_sig_handler] (0x0020): child [34068] failed with status [2].
(Tue Jul 24 13:13:54 2018) [sssd[be[MYDOM]]] [sdap_save_grpmem] (0x0020): Group members are ignored, nothing to do. If you see this message it might indicate an error in the group processing logic.
(Tue Jul 24 13:15:39 2018) [sssd[be[MYDOM]]] [sdap_save_grpmem] (0x0020): Group members are ignored, nothing to do. If you see this message it might indicate an error in the group processing logic.
(Tue Jul 24 13:15:39 2018) [sssd[be[MYDOM]]] [sdap_save_grpmem] (0x0020): Group members are ignored, nothing to do. If you see this message it might indicate an error in the group processing logic.
(Tue Jul 24 13:16:07 2018) [sssd[be[MYDOM]]] [sdap_save_grpmem] (0x0020): Group members are ignored, nothing to do. If you see this message it might indicate an error in the group processing logic.
(Tue Jul 24 13:16:07 2018) [sssd[be[MYDOM]]] [sdap_save_grpmem] (0x0020): Group members are ignored, nothing to do. If you see this message it might indicate an error in the group processing logic.
(Tue Jul 24 13:17:18 2018) [sssd[be[MYDOM]]] [ad_get_slave_domain_done] (0x0020): Unable to lookup slave domain data [110]: Connection timed out
(Tue Jul 24 13:19:20 2018) [sssd[be[MYDOM]]] [sdap_save_grpmem] (0x0020): Group members are ignored, nothing to do. If you see this message it might indicate an error in the group processing logic.
(Tue Jul 24 13:19:20 2018) [sssd[be[MYDOM]]] [sdap_save_grpmem] (0x0020): Group members are ignored, nothing to do. If you see this message it might indicate an error in the group processing logic.
(Tue Jul 24 13:19:20 2018) [sssd[be[MYDOM]]] [sdap_save_grpmem] (0x0020): Group members are ignored, nothing to do. If you see this message it might indicate an error in the group processing logic.
(Tue Jul 24 13:19:20 2018) [sssd[be[MYDOM]]] [sdap_save_grpmem] (0x0020): Group members are ignored, nothing to do. If you see this message it might indicate an error in the group processing logic.
(Tue Jul 24 13:19:20 2018) [sssd[be[MYDOM]]] [sdap_save_grpmem] (0x0020): Group members are ignored, nothing to do. If you see this message it might indicate an error in the group processing logic.
(Tue Jul 24 13:19:20 2018) [sssd[be[MYDOM]]] [sdap_save_grpmem] (0x0020): Group members are ignored, nothing to do. If you see this message it might indicate an error in the group processing logic.
ad_access_filter = DOM:MYDOM:(|(memberOf=CN=group01,OU=Groups,OU=MYOU,DC=MYDOM,DC=COM)(memberOf:1.2.840.113556.1.4.1941:=CN=group02,OU=Groups,OU=MYOU,DC=MYDOM,DC=COM))
python2-sssdconfig-1.15.3-0.el6.noarch
sssd-ldap-1.15.3-0.el6.x86_64
sssd-ad-1.15.3-0.el6.x86_64
sssd-ipa-1.15.3-0.el6.x86_64
sssd-1.15.3-0.el6.x86_64
sssd-krb5-common-1.15.3-0.el6.x86_64
sssd-krb5-1.15.3-0.el6.x86_64
sssd-common-pac-1.15.3-0.el6.x86_64
sssd-common-1.15.3-0.el6.x86_64
sssd-client-1.15.3-0.el6.x86_64
sssd-proxy-1.15.3-0.el6.x86_64
We're not using NFS NFS at all here. Did a number of searches but wasn't able to find out more online. Has anyone encountered the same and nudge me further along?
Authentication works and we can login however even with DEBUG LEVEL at 10, that's pretty much all that's printed in the above log file.
+ More appropriate subject.
Sent from my iPhone
On Jul 24, 2018, at 1:50 PM, TomK tomkcpr@mdevsys.com wrote:
Hey Guy's,
After implementing the LDAP_MATCHING_RULE_IN_CHAIN , we're seeing these messages in the sssd domain log file:
(Tue Jul 24 12:59:41 2018) [sssd[be[MYDOM]]] [child_sig_handler] (0x0020): child [17444] failed with status [1].
(Tue Jul 24 12:59:41 2018) [sssd[be[MYDOM]]] [child_sig_handler] (0x0020): child [17451] failed with status [1].
(Tue Jul 24 12:59:41 2018) [sssd[be[MYDOM]]] [child_sig_handler] (0x0020): child [17457] failed with status [1].
(Tue Jul 24 12:59:41 2018) [sssd[be[MYDOM]]] [child_sig_handler] (0x0020): child [17463] failed with status [1].
(Tue Jul 24 12:59:42 2018) [sssd[be[MYDOM]]] [child_sig_handler] (0x0020): child [17469] failed with status [1].
(Tue Jul 24 12:59:42 2018) [sssd[be[MYDOM]]] [child_sig_handler] (0x0020): child [17477] failed with status [1].
(Tue Jul 24 12:59:42 2018) [sssd[be[MYDOM]]] [child_sig_handler] (0x0020): child [17486] failed with status [1].
(Tue Jul 24 12:59:42 2018) [sssd[be[MYDOM]]] [child_sig_handler] (0x0020): child [17493] failed with status [1].
(Tue Jul 24 12:59:42 2018) [sssd[be[MYDOM]]] [child_sig_handler] (0x0020): child [17500] failed with status [1].
(Tue Jul 24 12:59:42 2018) [sssd[be[MYDOM]]] [child_sig_handler] (0x0020): child [17506] failed with status [1].
(Tue Jul 24 12:59:42 2018) [sssd[be[MYDOM]]] [child_sig_handler] (0x0020): child [17512] failed with status [1].
(Tue Jul 24 12:59:42 2018) [sssd[be[MYDOM]]] [child_sig_handler] (0x0020): child [17519] failed with status [1].
(Tue Jul 24 12:59:42 2018) [sssd[be[MYDOM]]] [child_sig_handler] (0x0020): child [17525] failed with status [1].
(Tue Jul 24 12:59:42 2018) [sssd[be[MYDOM]]] [child_sig_handler] (0x0020): child [17532] failed with status [1].
(Tue Jul 24 12:59:42 2018) [sssd[be[MYDOM]]] [child_sig_handler] (0x0020): child [17540] failed with status [1].
(Tue Jul 24 13:12:11 2018) [sssd[be[MYDOM]]] [child_sig_handler] (0x0020): child [34068] failed with status [2].
(Tue Jul 24 13:13:54 2018) [sssd[be[MYDOM]]] [sdap_save_grpmem] (0x0020): Group members are ignored, nothing to do. If you see this message it might indicate an error in the group processing logic.
(Tue Jul 24 13:15:39 2018) [sssd[be[MYDOM]]] [sdap_save_grpmem] (0x0020): Group members are ignored, nothing to do. If you see this message it might indicate an error in the group processing logic.
(Tue Jul 24 13:15:39 2018) [sssd[be[MYDOM]]] [sdap_save_grpmem] (0x0020): Group members are ignored, nothing to do. If you see this message it might indicate an error in the group processing logic.
(Tue Jul 24 13:16:07 2018) [sssd[be[MYDOM]]] [sdap_save_grpmem] (0x0020): Group members are ignored, nothing to do. If you see this message it might indicate an error in the group processing logic.
(Tue Jul 24 13:16:07 2018) [sssd[be[MYDOM]]] [sdap_save_grpmem] (0x0020): Group members are ignored, nothing to do. If you see this message it might indicate an error in the group processing logic.
(Tue Jul 24 13:17:18 2018) [sssd[be[MYDOM]]] [ad_get_slave_domain_done] (0x0020): Unable to lookup slave domain data [110]: Connection timed out
(Tue Jul 24 13:19:20 2018) [sssd[be[MYDOM]]] [sdap_save_grpmem] (0x0020): Group members are ignored, nothing to do. If you see this message it might indicate an error in the group processing logic.
(Tue Jul 24 13:19:20 2018) [sssd[be[MYDOM]]] [sdap_save_grpmem] (0x0020): Group members are ignored, nothing to do. If you see this message it might indicate an error in the group processing logic.
(Tue Jul 24 13:19:20 2018) [sssd[be[MYDOM]]] [sdap_save_grpmem] (0x0020): Group members are ignored, nothing to do. If you see this message it might indicate an error in the group processing logic.
(Tue Jul 24 13:19:20 2018) [sssd[be[MYDOM]]] [sdap_save_grpmem] (0x0020): Group members are ignored, nothing to do. If you see this message it might indicate an error in the group processing logic.
(Tue Jul 24 13:19:20 2018) [sssd[be[MYDOM]]] [sdap_save_grpmem] (0x0020): Group members are ignored, nothing to do. If you see this message it might indicate an error in the group processing logic.
(Tue Jul 24 13:19:20 2018) [sssd[be[MYDOM]]] [sdap_save_grpmem] (0x0020): Group members are ignored, nothing to do. If you see this message it might indicate an error in the group processing logic.
ad_access_filter = DOM:MYDOM:(|(memberOf=CN=group01,OU=Groups,OU=MYOU,DC=MYDOM,DC=COM)(memberOf:1.2.840.113556.1.4.1941:=CN=group02,OU=Groups,OU=MYOU,DC=MYDOM,DC=COM))
python2-sssdconfig-1.15.3-0.el6.noarch
sssd-ldap-1.15.3-0.el6.x86_64
sssd-ad-1.15.3-0.el6.x86_64
sssd-ipa-1.15.3-0.el6.x86_64
sssd-1.15.3-0.el6.x86_64
sssd-krb5-common-1.15.3-0.el6.x86_64
sssd-krb5-1.15.3-0.el6.x86_64
sssd-common-pac-1.15.3-0.el6.x86_64
sssd-common-1.15.3-0.el6.x86_64
sssd-client-1.15.3-0.el6.x86_64
sssd-proxy-1.15.3-0.el6.x86_64
We're not using NFS NFS at all here. Did a number of searches but wasn't able to find out more online. Has anyone encountered the same and nudge me further along?
Authentication works and we can login however even with DEBUG LEVEL at 10, that's pretty much all that's printed in the above log file.
-- Cheers, Tom K.
Living on earth is expensive, but it includes a free trip around the sun. _______________________________________________ sssd-users mailing list -- sssd-users@lists.fedorahosted.org To unsubscribe send an email to sssd-users-leave@lists.fedorahosted.org Fedora Code of Conduct: https://getfedora.org/code-of-conduct.html List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/sssd-users@lists.fedorahosted....
On (24/07/18 13:50), TomK wrote:
Hey Guy's,
After implementing the LDAP_MATCHING_RULE_IN_CHAIN , we're seeing these messages in the sssd domain log file:
(Tue Jul 24 12:59:41 2018) [sssd[be[MYDOM]]] [child_sig_handler] (0x0020): child [17444] failed with status [1].
It would be good to see errors in *_child.log files and maybe more context from domain log file.
(Tue Jul 24 13:12:11 2018) [sssd[be[MYDOM]]] [child_sig_handler] (0x0020): child [34068] failed with status [2].
(Tue Jul 24 13:13:54 2018) [sssd[be[MYDOM]]] [sdap_save_grpmem] (0x0020): Group members are ignored, nothing to do. If you see this message it might indicate an error in the group processing logic.
(Tue Jul 24 13:15:39 2018) [sssd[be[MYDOM]]] [sdap_save_grpmem] (0x0020): Group members are ignored, nothing to do. If you see this message it might indicate an error in the group processing logic.
(Tue Jul 24 13:15:39 2018) [sssd[be[MYDOM]]] [sdap_save_grpmem] (0x0020): Group members are ignored, nothing to do. If you see this message it might indicate an error in the group processing logic.
(Tue Jul 24 13:16:07 2018) [sssd[be[MYDOM]]] [sdap_save_grpmem] (0x0020): Group members are ignored, nothing to do. If you see this message it might indicate an error in the group processing logic.
(Tue Jul 24 13:16:07 2018) [sssd[be[MYDOM]]] [sdap_save_grpmem] (0x0020): Group members are ignored, nothing to do. If you see this message it might indicate an error in the group processing logic.
(Tue Jul 24 13:17:18 2018) [sssd[be[MYDOM]]] [ad_get_slave_domain_done] (0x0020): Unable to lookup slave domain data [110]: Connection timed out
(Tue Jul 24 13:19:20 2018) [sssd[be[MYDOM]]] [sdap_save_grpmem] (0x0020): Group members are ignored, nothing to do. If you see this message it might indicate an error in the group processing logic.
(Tue Jul 24 13:19:20 2018) [sssd[be[MYDOM]]] [sdap_save_grpmem] (0x0020): Group members are ignored, nothing to do. If you see this message it might indicate an error in the group processing logic.
(Tue Jul 24 13:19:20 2018) [sssd[be[MYDOM]]] [sdap_save_grpmem] (0x0020): Group members are ignored, nothing to do. If you see this message it might indicate an error in the group processing logic.
(Tue Jul 24 13:19:20 2018) [sssd[be[MYDOM]]] [sdap_save_grpmem] (0x0020): Group members are ignored, nothing to do. If you see this message it might indicate an error in the group processing logic.
(Tue Jul 24 13:19:20 2018) [sssd[be[MYDOM]]] [sdap_save_grpmem] (0x0020): Group members are ignored, nothing to do. If you see this message it might indicate an error in the group processing logic.
(Tue Jul 24 13:19:20 2018) [sssd[be[MYDOM]]] [sdap_save_grpmem] (0x0020): Group members are ignored, nothing to do. If you see this message it might indicate an error in the group processing logic.
ad_access_filter = DOM:MYDOM:(|(memberOf=CN=group01,OU=Groups,OU=MYOU,DC=MYDOM,DC=COM)(memberOf:1.2.840.113556.1.4.1941:=CN=group02,OU=Groups,OU=MYOU,DC=MYDOM,DC=COM))
python2-sssdconfig-1.15.3-0.el6.noarch
sssd-ldap-1.15.3-0.el6.x86_64
sssd-ad-1.15.3-0.el6.x86_64
sssd-ipa-1.15.3-0.el6.x86_64
sssd-1.15.3-0.el6.x86_64
sssd-krb5-common-1.15.3-0.el6.x86_64
sssd-krb5-1.15.3-0.el6.x86_64
sssd-common-pac-1.15.3-0.el6.x86_64
sssd-common-1.15.3-0.el6.x86_64
sssd-client-1.15.3-0.el6.x86_64
sssd-proxy-1.15.3-0.el6.x86_64
^^^^^^^^
Did you build packages yourself? If yes then it might be good idea to use 1.16.2
LS
You’re on the money but let me hold off on this for a bit. Something I overlooked to check. :(
Ty
Sent from my iPhone
On Jul 26, 2018, at 2:21 PM, Lukas Slebodnik lslebodn@redhat.com wrote:
On (24/07/18 13:50), TomK wrote: Hey Guy's,
After implementing the LDAP_MATCHING_RULE_IN_CHAIN , we're seeing these messages in the sssd domain log file:
(Tue Jul 24 12:59:41 2018) [sssd[be[MYDOM]]] [child_sig_handler] (0x0020): child [17444] failed with status [1].
It would be good to see errors in *_child.log files and maybe more context from domain log file.
(Tue Jul 24 13:12:11 2018) [sssd[be[MYDOM]]] [child_sig_handler] (0x0020): child [34068] failed with status [2].
(Tue Jul 24 13:13:54 2018) [sssd[be[MYDOM]]] [sdap_save_grpmem] (0x0020): Group members are ignored, nothing to do. If you see this message it might indicate an error in the group processing logic.
(Tue Jul 24 13:15:39 2018) [sssd[be[MYDOM]]] [sdap_save_grpmem] (0x0020): Group members are ignored, nothing to do. If you see this message it might indicate an error in the group processing logic.
(Tue Jul 24 13:15:39 2018) [sssd[be[MYDOM]]] [sdap_save_grpmem] (0x0020): Group members are ignored, nothing to do. If you see this message it might indicate an error in the group processing logic.
(Tue Jul 24 13:16:07 2018) [sssd[be[MYDOM]]] [sdap_save_grpmem] (0x0020): Group members are ignored, nothing to do. If you see this message it might indicate an error in the group processing logic.
(Tue Jul 24 13:16:07 2018) [sssd[be[MYDOM]]] [sdap_save_grpmem] (0x0020): Group members are ignored, nothing to do. If you see this message it might indicate an error in the group processing logic.
(Tue Jul 24 13:17:18 2018) [sssd[be[MYDOM]]] [ad_get_slave_domain_done] (0x0020): Unable to lookup slave domain data [110]: Connection timed out
(Tue Jul 24 13:19:20 2018) [sssd[be[MYDOM]]] [sdap_save_grpmem] (0x0020): Group members are ignored, nothing to do. If you see this message it might indicate an error in the group processing logic.
(Tue Jul 24 13:19:20 2018) [sssd[be[MYDOM]]] [sdap_save_grpmem] (0x0020): Group members are ignored, nothing to do. If you see this message it might indicate an error in the group processing logic.
(Tue Jul 24 13:19:20 2018) [sssd[be[MYDOM]]] [sdap_save_grpmem] (0x0020): Group members are ignored, nothing to do. If you see this message it might indicate an error in the group processing logic.
(Tue Jul 24 13:19:20 2018) [sssd[be[MYDOM]]] [sdap_save_grpmem] (0x0020): Group members are ignored, nothing to do. If you see this message it might indicate an error in the group processing logic.
(Tue Jul 24 13:19:20 2018) [sssd[be[MYDOM]]] [sdap_save_grpmem] (0x0020): Group members are ignored, nothing to do. If you see this message it might indicate an error in the group processing logic.
(Tue Jul 24 13:19:20 2018) [sssd[be[MYDOM]]] [sdap_save_grpmem] (0x0020): Group members are ignored, nothing to do. If you see this message it might indicate an error in the group processing logic.
ad_access_filter = DOM:MYDOM:(|(memberOf=CN=group01,OU=Groups,OU=MYOU,DC=MYDOM,DC=COM)(memberOf:1.2.840.113556.1.4.1941:=CN=group02,OU=Groups,OU=MYOU,DC=MYDOM,DC=COM))
python2-sssdconfig-1.15.3-0.el6.noarch
sssd-ldap-1.15.3-0.el6.x86_64
sssd-ad-1.15.3-0.el6.x86_64
sssd-ipa-1.15.3-0.el6.x86_64
sssd-1.15.3-0.el6.x86_64
sssd-krb5-common-1.15.3-0.el6.x86_64
sssd-krb5-1.15.3-0.el6.x86_64
sssd-common-pac-1.15.3-0.el6.x86_64
sssd-common-1.15.3-0.el6.x86_64
sssd-client-1.15.3-0.el6.x86_64
sssd-proxy-1.15.3-0.el6.x86_64
^^^^^^^^
Did you build packages yourself? If yes then it might be good idea to use 1.16.2
LS
sssd-users@lists.fedorahosted.org