[Freeipa-users] FreeIPA as Samba Backend, Existing Users Fail

Sumit Bose sbose at redhat.com
Fri Jan 13 13:37:19 UTC 2017


On Wed, Jan 11, 2017 at 04:00:57PM -0500, Armaan Esfahani wrote:
> Hi, I have setup a Samba server to use FreeIPA as a password backend, however whenever I try to use existing users to login I get “NT_STATUS_LOGON_FAILURE”. 
> 
> Looking at the sssd_nss log on my ipa server, I get the following error “(Wed Jan 11 15:56:11 2017) [sssd[nss]] [fill_sid] (0x0020): Missing SID.”  On all existing accounts, whereas all new accounts function properly (after resetting their passwords).
> 
>  
> 
> Anyone have any ideas?

Maybe the sidgen task was run during ipa-adtrust-install, please see
https://access.redhat.com/documentation/en-US/Red_Hat_Enterprise_Linux/7/html/Windows_Integration_Guide/creating-trusts.html#create-trust-existing-idm
how to run it.

HTH

bye,
Sumit

> 

> -- 
> Manage your subscription for the Freeipa-users mailing list:
> https://www.redhat.com/mailman/listinfo/freeipa-users
> Go to http://freeipa.org for more info on the project




More information about the Freeipa-users mailing list