[Freeipa-users] Active Directory users are not controlled by HBAC

Alexander Bokovoy abokovoy at redhat.com
Mon Jan 25 22:47:42 UTC 2016

On Mon, 25 Jan 2016, Birnbaum, Warren (ETW) wrote:
>OK.  I have done this and am using the pam stack that is the result of
>what you here describe.
>A few threads back you mentioned that this could be a reason why my hbac
>are not restricting access.  I have no hbac rules currently and any active
>directory user can access any host.  Is there something else I could look
>at to see why this is happening?
https://fedorahosted.org/sssd/wiki/Troubleshooting is your friend.

/ Alexander Bokovoy

More information about the Freeipa-users mailing list