IPA users are not able to login with the SSSD Error : "invalid dn value"
Issue
IPA users are not able to login with the SSSD Error :
invalid dn value: [fqdn=ipaclient.example.com+nsuniqueid=1848fc81-feaa11e5-b4e09263-6f697bb6,cn=computers,cn=accounts,dc=ipa,dc=example,dc=com]
id returns results as expected.
Secure logs :
sshd[21018]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=10.36.4.170 user=testuser
sshd[21018]: pam_sss(sshd:auth): authentication success; logname= uid=0 euid=0 tty=ssh ruser= rhost=10.36.4.170 user=testuser
sshd[21018]: pam_sss(sshd:account): Access denied for user testuser: 4 (System error)
sshd[21016]: error: PAM: User account has expired for testuser from 10.x.x.x
sssd_domain.logs shows the following error :
invalid dn value: [fqdn=ipaclient.example.com+nsuniqueid=1848fc81-feaa11e5-b4e09263-6f697bb6,cn=computers,cn=accounts,dc=ipa,dc=example,dc=com]
Environment
- Red Hat Enterprise Linux 6.4
- sssd-1.9.2-82.10.el6_4.x86_64
Subscriber exclusive content
A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.