#807 IPA provider should use realm instead of ipa_domain for base DN
Closed: Fixed Opened by jhrozek.

See https://fedorahosted.org/freeipa/ticket/1001 and the bug linked from there.

The problem is that IPA seems to be deriving its Base DN from the Kerberos realm. SSSD derives it from IPA domain. In 99% of cases the two are the same, but there's no requirement on it, so we should use the realm, too.


Fields changed

milestone: NEEDS_TRIAGE => SSSD 1.5.2

Fields changed

owner: somebody => jhrozek

master: 073e71701dc28e21aaa1750d8b456ac699b8dda8

sssd-1-5: d60595dcb51240f392e6f8e464425c76bf21da1b

resolution: => fixed
status: new => closed

Fields changed

rhbz: => 0

Metadata Update from @jhrozek:
- Issue assigned to jhrozek
- Issue set to the milestone: SSSD 1.5.2

SSSD is moving from Pagure to Github. This means that new issues and pull requests
will be accepted only in SSSD's github repository.

This issue has been cloned to Github and is available here:
- https://github.com/SSSD/sssd/issues/1849

If you want to receive further updates on the issue, please navigate to the github issue
and click on subscribe button.

Thank you for understanding. We apologize for all inconvenience.

Metadata