LinuxQuestions.org
Welcome to the most active Linux Forum on the web.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Software
User Name
Password
Linux - Software This forum is for Software issues.
Having a problem installing a new program? Want to know which application is best for the job? Post your question in this forum.

Notices


Reply
  Search this Thread
Old 01-09-2022, 12:06 PM   #1
AlanRaczek
LQ Newbie
 
Registered: Mar 2019
Posts: 9

Rep: Reputation: Disabled
AD users can login, AD group members cannot sssd


On a test setup with Windows 2019 and Centos 7 I am trying to get users on the Linux machines to login to AD via group membership
and it is not working. I basically followed instructions at this link:
https://www.linuxtechi.com/integrate-rh ... directory/

Note by login I am taking about console login and not SSH login (yet).I successfully added the Linux machine to AD, logged into the AD domain successfully via Linux as AD 'administrator' and also a normal user created in AD. Removed permitted logins (realm deny --all) and added an AD group called 'centaccess'. Restarted sssd. No user in the 'centaccess' group can login to the console but as an individual can login.

I also tried to permit just one user from AD and it worked fine. I just can't get users in a group to be able to login to the console. I also tried removing the need for FQDN, no luck.

What am I missing?
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
SSSD (Centos 7) - Active Directory Users Randomly are Missing Group Associations gfrair Linux - Server 1 12-05-2019 12:47 PM
[SOLVED] Joined Linux to AD domain - domain group info becomes quickly outdated, SSSD cache needs to be cleared often. tfm217 Linux - Newbie 12 09-21-2019 08:50 AM
[SOLVED] sssd: Benign local domain sssd.conf needed boxyzzy Linux - Server 1 10-06-2016 01:31 PM
[SOLVED] SSSD "forgets" group name gatsby Linux - Server 2 04-18-2016 05:43 PM
[SOLVED] Implications of making users members of 'apache' group Wim Sturkenboom Linux - Security 3 06-03-2009 02:30 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Software

All times are GMT -5. The time now is 02:28 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration