-
Notifications
You must be signed in to change notification settings - Fork 16
Open
Description
Hello
If the freeipa-client is installed and configured before the system-roles-tlog is run then the sssd client will stop to work with the domain that we are connected too.
Before tlog
services = nss, pam, ssh, sudo
domains = nssfiles, pfy.local
After tlog
services = nss, pam
domains = nssfiles
As shown the tlog removes the domain and ssh + sudo from the sssd.conf this needs to be retained for the domain function of sssd to work the correct way.
if i do id <username>
for a IDM user after installing tlog it fails to lookup the user.
I think the role will require to read services and domains first and add the missing services instead of overwriting already configured services.
Metadata
Metadata
Assignees
Labels
No labels