Account Options

  1. Sign in
The old Google Groups will be going away soon, but your browser is incompatible with the new version.
Google Groups Home
« Groups Home
RHEL group management with AD
There are currently too many topics in this group that display first. To make this topic appear first, remove this option from another topic.
There was an error processing your request. Please try again.
flag
  2 messages - Collapse all  -  Translate all to Translated (View all originals)
The group you are posting to is a Usenet group. Messages posted to this group will make your email address visible to anyone on the Internet.
Your reply message has not been sent.
Your post was successful
 
From:
To:
Cc:
Followup To:
Add Cc | Add Followup-to | Edit Subject
Subject:
Validation:
For verification purposes please type the characters you see in the picture below or the numbers you hear by clicking the accessibility icon. Listen and type the numbers you hear
 
Eugene Vilensky  
View profile  
 More options Jul 14 2012, 2:40 pm
From: Eugene Vilensky <evilen...@gmail.com>
Date: Sat, 14 Jul 2012 13:40:57 -0500
Local: Sat, Jul 14 2012 2:40 pm
Subject: RHEL group management with AD
Greetings,

My question is about using Puppet to manage RHEL6 users' local group memberships when the users are served from AD using Winbind.

I have RHEL6 x86_64 machines joined to a Windows 2003-level domain using Winbind with Kerberos for auth.

To add a user-type to a local group, it appears that all groups are evaluated and are subsequently "not found" for the winbind-provided groups, which causes managing a user's group properties with the default of attribute_membership of minimum to fail.

Have there been any known work arounds?  (I think I'm hitting issue 1583:
http://projects.puppetlabs.com/issues/1583)

Thanks much,
Eugene


 
You must Sign in before you can post messages.
To post a message you must first join this group.
Please update your nickname on the subscription settings page before posting.
You do not have the permission required to post.
Eugene Vilensky  
View profile  
 More options Jul 15 2012, 12:54 am
From: Eugene Vilensky <evilen...@gmail.com>
Date: Sat, 14 Jul 2012 23:54:37 -0500
Local: Sun, Jul 15 2012 12:54 am
Subject: Re: RHEL group management with AD

On Jul 14, 2012, at 1:40 PM, Eugene Vilensky <evilen...@gmail.com> wrote:

> Have there been any known work arounds?  (I think I'm hitting issue 1583:
> http://projects.puppetlabs.com/issues/1583)

I should note unlike issue 1583, winbind enum groups is set to "on" in my configuration.

 
You must Sign in before you can post messages.
To post a message you must first join this group.
Please update your nickname on the subscription settings page before posting.
You do not have the permission required to post.
End of messages
« Back to Discussions « Newer topic     Older topic »