diff options
author | Lukas Slebodnik <lslebodn@redhat.com> | 2015-04-07 09:47:17 +0200 |
---|---|---|
committer | Jakub Hrozek <jhrozek@redhat.com> | 2015-04-17 13:35:49 +0200 |
commit | adb148603344a42d6edffdda0786a10af715dacb (patch) | |
tree | e10d26020a679350445f166b8ceac60f74a912f4 | |
parent | 6fa190d636805a7126ebc775c0eacdd97dd78035 (diff) | |
download | sssd-adb148603344a42d6edffdda0786a10af715dacb.tar.gz sssd-adb148603344a42d6edffdda0786a10af715dacb.tar.xz sssd-adb148603344a42d6edffdda0786a10af715dacb.zip |
ad_opts: Use different default attribute for group name
The MSFT docs [1,2] for LDAP attributes says:
samAccountName is mandotory for 'user' and 'group' objectclasses
via the 'Security-Principal' aux-class
name is part of the 'top' class and *not* mandatory for 'user' or 'group'.
[1] https://msdn.microsoft.com/en-us/library/ms679635%28v=vs.85%29.aspx
[2] https://msdn.microsoft.com/en-us/library/ms678697%28v=vs.85%29.aspx
Resolves:
https://fedorahosted.org/sssd/ticket/2593
Reviewed-by: Sumit Bose <sbose@redhat.com>
-rw-r--r-- | src/providers/ad/ad_opts.h | 2 |
1 files changed, 1 insertions, 1 deletions
diff --git a/src/providers/ad/ad_opts.h b/src/providers/ad/ad_opts.h index f4c1c523b..0b7255a82 100644 --- a/src/providers/ad/ad_opts.h +++ b/src/providers/ad/ad_opts.h @@ -220,7 +220,7 @@ struct sdap_attr_map ad_2008r2_user_map[] = { struct sdap_attr_map ad_2008r2_group_map[] = { { "ldap_group_object_class", "group", SYSDB_GROUP_CLASS, NULL }, { "ldap_group_object_class_alt", NULL, SYSDB_GROUP_CLASS, NULL }, - { "ldap_group_name", "name", SYSDB_NAME, NULL }, + { "ldap_group_name", "sAMAccountName", SYSDB_NAME, NULL }, { "ldap_group_pwd", NULL, SYSDB_PWD, NULL }, { "ldap_group_gid_number", "gidNumber", SYSDB_GIDNUM, NULL }, { "ldap_group_member", "member", SYSDB_MEMBER, NULL }, |