#2542 GPO offline processing rejects access if no applicable GPOs are find in the cache
Closed: Fixed Opened by jhrozek.

We store GPO processing objects in cache along with the Interactive/Remote logon right lists. If the result object is not cached at all (ie no applicable GPOs were found while online), then currently SSSD errors out and rejects access.

I think access should be allowed in this case.


Linked to Bugzilla bug: https://bugzilla.redhat.com/show_bug.cgi?id=1177140 (Red Hat Enterprise Linux 7)

rhbz: => [https://bugzilla.redhat.com/show_bug.cgi?id=1177140 1177140]

I have a patch

owner: somebody => jhrozek
status: new => assigned

Fields changed

patch: 0 => 1

Fields changed

milestone: NEEDS_TRIAGE => SSSD 1.12.4

  • master:
    • ee8dccf5f0a7de4aba16ab73a53872df9a65175c
    • fc2cc91a5b645180e53d46436b0d08011aac8d74
  • sssd-1-12:
    • c60710d6836ec4010e7a02302133f723a282abcb
    • e4eec975e58b1c91bf5270add0b0f01d2c1ba9e1

resolution: => fixed
status: assigned => closed

Metadata Update from @jhrozek:
- Issue assigned to jhrozek
- Issue set to the milestone: SSSD 1.12.4

SSSD is moving from Pagure to Github. This means that new issues and pull requests
will be accepted only in SSSD's github repository.

This issue has been cloned to Github and is available here:
- https://github.com/SSSD/sssd/issues/3584

If you want to receive further updates on the issue, please navigate to the github issue
and click on subscribe button.

Thank you for understanding. We apologize for all inconvenience.

Metadata