[Freeipa-users] Only one AD user can able to login to IPA server

Jakub Hrozek jhrozek at redhat.com
Tue Mar 17 09:09:22 UTC 2015


On Tue, Mar 17, 2015 at 11:37:24AM +0300, Ben .T.George wrote:
> HI List
> 
> i was following this link :
> http://www.freeipa.org/page/Active_Directory_trust_setup#Assumptions
> to setup IPA server
> 
> my IPA version is 4.1.2
> 
> every setps in this tutorials was passed without any error
> 
> even "*Allow access for users from AD domain to protected resources*"
> went successfully
> my current issue is only one user called ben can able to login to ipa
> server.please check below:
> 
> [root at kwtpocpbis01 ~]# getent passwd ben at infra.com
> ben at infra.com:*:531001104:531001104:ben:/home/infra.com/ben:
> [root at kwtpocpbis01 ~]# getent passwd bobby at infra.com
> [root at kwtpocpbis01 ~]# getent passwd administrator at infra.com
> [root at kwtpocpbis01 ~]#
> 
> the users ben & bobby are on same group (Domain users). but bobby cannot
> able to login to IPA and not getting any information while querying
> please help me to fix this issue. i don't know where i need to troubleshoot
> this issue.

Can you increase debug_level in both [nss] and [domain] sections on the
server and paste the logs here?




More information about the Freeipa-users mailing list