#2483 TokenGroups for LDAP provider breaks in corner cases
Closed: Fixed Opened by jhrozek.

We tried to speed up processing of initgroup lookups with tokenGroups even for the LDAP provider, but it turns out that there are too many corner cases that we didn't catch during development that break. For instance, groups from other trusted domains might appear in TG and the LDAP provider isn't equipped to handle them.

Overall, users who wish to use the added speed benefits of tokenGroups are advised to use the AD provider.


Ticket has been cloned to Bugzilla: https://bugzilla.redhat.com/show_bug.cgi?id=1160713

rhbz: => [https://bugzilla.redhat.com/show_bug.cgi?id=1160713 1160713]

Fields changed

status: new => assigned

Fields changed

patch: 0 => 1

  • master: 5febf5ed0cfb4ba7665d8c3e36ee6941988da773

resolution: => fixed
status: assigned => closed

  • sssd-1-11: 6037341d6d77dc61b11d3d23944c615a96713353

Metadata Update from @jhrozek:
- Issue assigned to lslebodn
- Issue set to the milestone: SSSD 1.11.8

SSSD is moving from Pagure to Github. This means that new issues and pull requests
will be accepted only in SSSD's github repository.

This issue has been cloned to Github and is available here:
- https://github.com/SSSD/sssd/issues/3525

If you want to receive further updates on the issue, please navigate to the github issue
and click on subscribe button.

Thank you for understanding. We apologize for all inconvenience.

Metadata