lists.arthurdejong.org
RSS feed

Re: getent gid does not return group name

[Date Prev][Date Next] [Thread Prev][Thread Next]

Re: getent gid does not return group name



On Fri, 6 Nov 2015, Thomas Loimer wrote:
When using
 map group gidNumber objectSid:S-1-5-21-12341...
in /etc/nslcd.conf, then
 getent groupname
correctly returns the group information, including the gid (1234), but
 getent 1234
fails.

The length of the SID value when using the objectSid mapping really matters. For the translation from objectSid to gid and uid it should always just use the last bit only but for constructing the full SID from the gid or uid the configured value is used.

Hope this helps.

Kind regards,

--
-- arthur - arthur@arthurdejong.org - http://arthurdejong.org/ --
--
To unsubscribe send an email to
nss-pam-ldapd-users-unsubscribe@lists.arthurdejong.org or see
http://lists.arthurdejong.org/nss-pam-ldapd-users/