Bug 1379325

Summary: ding-libs don't parse lines without an equal sign
Product: Red Hat Enterprise Linux 7 Reporter: Jakub Hrozek <jhrozek>
Component: ding-libsAssignee: Jakub Hrozek <jhrozek>
Status: CLOSED NEXTRELEASE QA Contact: Dan Lavu <dlavu>
Severity: high Docs Contact:
Priority: high    
Version: 7.3CC: enewland, mkolaja, mkosek, mzidek, sgoveas, tscherf
Target Milestone: rcKeywords: Reopened
Target Release: ---   
Hardware: Unspecified   
OS: Unspecified   
Whiteboard:
Fixed In Version: Doc Type: If docs needed, set a value
Doc Text:
Story Points: ---
Clone Of: 1377213 Environment:
Last Closed: 2017-04-11 07:25:38 UTC Type: Bug
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Bug Depends On: 1377213    
Bug Blocks: 1316164, 1395225    

Description Jakub Hrozek 2016-09-26 11:35:49 UTC
+++ This bug was initially created as a clone of Bug #1377213 +++

Description of problem:
This bugzilla tracks the upstream ticket https://fedorahosted.org/sssd/ticket/2751

It's required to fix to process some GPO files from Windows.

Version-Release number of selected component (if applicable):


How reproducible:


Steps to Reproduce:
1.
2.
3.

Actual results:


Expected results:


Additional info:

--- Additional comment from Jakub Hrozek on 2016-09-19 05:23:21 EDT ---

Upstream ticket:
https://fedorahosted.org/sssd/ticket/2751

--- Additional comment from Jakub Hrozek on 2016-09-21 10:42:16 EDT ---

Michal, can you add some steps to reproduce?

--- Additional comment from Michal Zidek on 2016-09-21 11:07:42 EDT ---

Steps to reproduce:

1. configure SSSD as AD client with enforced GPO access control. Add this line to the domain section in sssd.conf

ad_gpo_access_control = enforcing

2. Create user1 in AD

3. create a GPO for access control on the AD server. The GPO must apply to the client machine and allow login for user1. The GPO ini file must contain line with no equal sign. For example add this as the last line in the GPO ini file

foo,"2"

4. try to login as user1 from AD

Current result:
Access for user1 is denied.

Expected result:
user1 should be able to login.

Comment 1 Jakub Hrozek 2016-09-26 11:36:30 UTC
This bug was fixed in ding-libs commit 9591b1d8adbf195c40c123b1b5125db82e049a56

Comment 2 Jakub Hrozek 2016-09-26 11:38:45 UTC
This bug was closed upstream without a corresponding Red Hat bugzilla ticket because ding-libs was rebased in 7.3.

To make sure the bug is tracked, I'm jst closing it as NEXTRELEASE since RHEL customers can just update to 7.3 to get this fix.

Comment 6 Jakub Hrozek 2016-09-28 10:26:47 UTC
Marking as MODIFIED since the package was built, in fact already for 7.3 as part of the rebase.

Comment 9 Martin Kosek 2017-04-11 07:25:38 UTC
Given comments and progress of this bug, I think we no longer need to track it separately, so closing again (details in Comment 2).