RHEL group management with AD

51 views
Skip to first unread message

Eugene Vilensky

unread,
Jul 14, 2012, 2:40:57 PM7/14/12
to puppet...@googlegroups.com
Greetings,

My question is about using Puppet to manage RHEL6 users' local group memberships when the users are served from AD using Winbind.

I have RHEL6 x86_64 machines joined to a Windows 2003-level domain using Winbind with Kerberos for auth.

To add a user-type to a local group, it appears that all groups are evaluated and are subsequently "not found" for the winbind-provided groups, which causes managing a user's group properties with the default of attribute_membership of minimum to fail.

Have there been any known work arounds? (I think I'm hitting issue 1583:
http://projects.puppetlabs.com/issues/1583)

Thanks much,
Eugene

Eugene Vilensky

unread,
Jul 15, 2012, 12:54:37 AM7/15/12
to puppet...@googlegroups.com

On Jul 14, 2012, at 1:40 PM, Eugene Vilensky <evil...@gmail.com> wrote:
>
> Have there been any known work arounds? (I think I'm hitting issue 1583:
> http://projects.puppetlabs.com/issues/1583)

I should note unlike issue 1583, winbind enum groups is set to "on" in my configuration.
Reply all
Reply to author
Forward
0 new messages