LDAP integration and sshd

Corinna Vinschen corinna-cygwin@cygwin.com
Thu Jun 26 10:50:00 GMT 2014


On Jun 26 09:37, Achim Gratz wrote:
> Corinna Vinschen <corinna-cygwin <at> cygwin.com> writes:
> > In theory, no.  AllowGroups is admin-settable in the config file while
> > the "sshd" user request is built into the code.  Just use the names as
> > you get them:
> > 
> >   AllowGroups bla MACHINE+blub DOMAIN+blubber ...
> 
> Hmm.  Doesn't appear to be working in any combination I tried, I'm always
> getting an "invalid user" when I'm trying to do that.  Is it possible that
> the AD lookup doesn't work when using privilege separation?

No idea.  Did you try?  You didn't use '@' as separator, by any chance?


Corinna

-- 
Corinna Vinschen                  Please, send mails regarding Cygwin to
Cygwin Maintainer                 cygwin AT cygwin DOT com
Red Hat
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 819 bytes
Desc: not available
URL: <http://cygwin.com/pipermail/cygwin/attachments/20140626/41639f7b/attachment.sig>


More information about the Cygwin mailing list