Bug 1278691 - Please fix rfc2307 autofs schema defaults
Please fix rfc2307 autofs schema defaults
Product: Red Hat Enterprise Linux 7
Classification: Red Hat
Component: sssd (Show other bugs)
All All
medium Severity medium
: rc
: 7.2
Assigned To: SSSD Maintainers
Steeve Goveas
Depends On:
  Show dependency treegraph
Reported: 2015-11-06 02:48 EST by Ondrej
Modified: 2017-10-18 04:48 EDT (History)
10 users (show)

See Also:
Fixed In Version: sssd-1.14.0-1.el7
Doc Type: Bug Fix
Doc Text:
Story Points: ---
Clone Of:
Last Closed: 2016-11-04 03:12:30 EDT
Type: Bug
Regression: ---
Mount Type: ---
Documentation: ---
Verified Versions:
Category: ---
oVirt Team: ---
RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: ---

Attachments (Terms of Use)

External Trackers
Tracker ID Priority Status Summary Last Updated
FedoraHosted SSSD 2858 None None None Never

  None (edit)
Description Ondrej 2015-11-06 02:48:08 EST
Description of problem:

In my test case I use: autofs_provider = ldap ldap_schema = rfc2307

But from the logs I see that SSSD is expecting automounter maps in RFC2307bis format instead: ...

(Tue Nov  3 14:22:28 2015) [sssd[be[default]]] [sdap_get_map] (0x0400): Option ldap_autofs_map_object_class has value automountMap
(Tue Nov  3 14:22:28 2015) [sssd[be[default]]] [sdap_get_map] (0x0400): Option ldap_autofs_map_name has value ou
(Tue Nov  3 14:22:28 2015) [sssd[be[default]]] [sdap_get_map] (0x0400): Option ldap_autofs_entry_object_class has value automount
(Tue Nov  3 14:22:28 2015) [sssd[be[default]]] [sdap_get_map] (0x0400): Option ldap_autofs_entry_key has value cn
(Tue Nov  3 14:22:28 2015) [sssd[be[default]]] [sdap_get_map] (0x0400): Option ldap_autofs_entry_value has value automountInformation

As according to RFC2307, automounter maps are stored as general NIS maps, i.e. :

    ldap_autofs_entry_key = cn
    ldap_autofs_entry_object_class = nisObject
    ldap_autofs_entry_value = nisMapEntry
    ldap_autofs_map_name = nisMapName
    ldap_autofs_map_object_class = nisMap
Comment 3 Jakub Hrozek 2015-11-11 11:37:12 EST
Upstream ticket:
Comment 4 Jakub Hrozek 2015-11-11 11:40:41 EST
Option changes must happen in RHEL-7 first.
Comment 6 Jakub Hrozek 2016-01-11 10:56:07 EST
There is already a work-in-progress code, we just need to figure out the sysdb upgrade (depends on the sysdb refactoring), so in general I think this would make 7.3
Comment 7 Jakub Hrozek 2016-07-06 11:09:15 EDT
* master: 999d6066c7a96f102b692d31435d76114478e874
Comment 9 shridhar 2016-09-19 07:02:40 EDT
Verified with

 ~]# rpm -qa|egrep  sssd

from sssd.conf
autofs_provider = ldap
ldap_schema = rfc2307
cache_credentials = True

id_provider = ldap
auth_provider = ldap
chpass_provider = ldap
ldap_search_base = dc=example,dc=com

from sssd_default.log
/var/log/sssd/sssd_default.log:(Mon Sep 19 06:37:05 2016) [sssd[be[default]]] [ldap_get_autofs_options] (0x0200): Option ldap_autofs_search_base set to dc=example,dc=com
/var/log/sssd/sssd_default.log:(Mon Sep 19 06:37:05 2016) [sssd[be[default]]] [sdap_get_map] (0x0400): Option ldap_autofs_map_object_class has value nisMap
/var/log/sssd/sssd_default.log:(Mon Sep 19 06:37:05 2016) [sssd[be[default]]] [sdap_get_map] (0x0400): Option ldap_autofs_map_name has value nisMapName
/var/log/sssd/sssd_default.log:(Mon Sep 19 06:37:05 2016) [sssd[be[default]]] [sdap_get_map] (0x0400): Option ldap_autofs_entry_object_class has value nisObject
/var/log/sssd/sssd_default.log:(Mon Sep 19 06:37:05 2016) [sssd[be[default]]] [sdap_get_map] (0x0400): Option ldap_autofs_entry_key has value cn
/var/log/sssd/sssd_default.log:(Mon Sep 19 06:37:05 2016) [sssd[be[default]]] [sdap_get_map] (0x0400): Option ldap_autofs_entry_value has value nisMapEntry
Comment 11 errata-xmlrpc 2016-11-04 03:12:30 EDT
Since the problem described in this bug report should be
resolved in a recent advisory, it has been closed with a
resolution of ERRATA.

For information on the advisory, and where to find the updated
files, follow the link below.

If the solution does not work for you, open a new bug report.


Note You need to log in before you can comment on or make changes to this bug.