Cannot log in with AD users when ad_gpo_access_control is set to enforcing on RHEL7
Issue
With sssd configured to authenticate users against Active Directory, everything works fine while ad_gpo_access_control is set to permissive. If that setting is changed to enforcing, then domain users cannot log in. The following errors are seen in the log:
Cannot retrieve master domain info
Unable to get som list: [2](No such file or directory)
Environment
RHEL-7.4
sssd-1.15.2-50.el7_4.8.x86_64
Subscriber exclusive content
A Red Hat subscription provides unlimited access to our knowledgebase of over 48,000 articles and solutions.
Welcome! Check out the Getting Started with Red Hat page for quick tours and guides for common tasks.
