diff options
author | Pavel Březina <pbrezina@redhat.com> | 2014-10-31 14:26:30 +0100 |
---|---|---|
committer | Jakub Hrozek <jhrozek@redhat.com> | 2014-11-05 15:04:05 +0100 |
commit | 3937736546e2a4b7cccc58fded3efdff9ae690fc (patch) | |
tree | 1da09cbf930d22817206946360385a8f82b8d42d /src/providers/ipa/ipa_opts.h | |
parent | f933190722886ff23eab8148b473915908bc8c23 (diff) | |
download | sssd-3937736546e2a4b7cccc58fded3efdff9ae690fc.tar.gz sssd-3937736546e2a4b7cccc58fded3efdff9ae690fc.tar.xz sssd-3937736546e2a4b7cccc58fded3efdff9ae690fc.zip |
IPA: use ipaUserGroup object class for groups
dfb34c6c82ed5014599bf70de6791e6d79106fc2 changed object class
of IPA groups from posixGroups to more general groupOfNames.
However, this object class is used also for roles, permissions and
privileges which caused SSSD to consider those objects to be groups as
well during initgroups.
Resolves:
https://fedorahosted.org/sssd/ticket/2471
Reviewed-by: Jakub Hrozek <jhrozek@redhat.com>
Diffstat (limited to 'src/providers/ipa/ipa_opts.h')
-rw-r--r-- | src/providers/ipa/ipa_opts.h | 2 |
1 files changed, 1 insertions, 1 deletions
diff --git a/src/providers/ipa/ipa_opts.h b/src/providers/ipa/ipa_opts.h index 4785e0164..0e0eed49c 100644 --- a/src/providers/ipa/ipa_opts.h +++ b/src/providers/ipa/ipa_opts.h @@ -205,7 +205,7 @@ struct sdap_attr_map ipa_user_map[] = { }; struct sdap_attr_map ipa_group_map[] = { - { "ldap_group_object_class", "groupOfNames", SYSDB_GROUP_CLASS, NULL }, + { "ldap_group_object_class", "ipaUserGroup", SYSDB_GROUP_CLASS, NULL }, { "ldap_group_object_class_alt", "posixGroup", SYSDB_GROUP_CLASS, NULL }, { "ldap_group_name", "cn", SYSDB_NAME, NULL }, { "ldap_group_pwd", "userPassword", SYSDB_PWD, NULL }, |