thanks for replying, it turns out this is an artifact of sssd not passing the root queries along to ldap. not an oddity with 389ds On Thu, Nov 14, 2024 at 7:53 PM William Brown <wbrown@xxxxxxx> wrote: > > What's in your /etc/nsswitch.conf? > > > On 15 Nov 2024, at 02:20, Michael DiDomenico via 389-users <389-users@xxxxxxxxxxxxxxxxxxxxxxx> wrote: > > > > is there a restriction on what groups 389ds will return for user root? > > my ldap tree is working fine, all the normal users seem to be in the > > right groups as returned by getent/id, but when i query root it > > doesn't return any group info. a google search didn't pull anything > > immediately relevant, but i'm still looking > > > > thanks > > -- > > _______________________________________________ > > 389-users mailing list -- 389-users@xxxxxxxxxxxxxxxxxxxxxxx > > To unsubscribe send an email to 389-users-leave@xxxxxxxxxxxxxxxxxxxxxxx > > Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ > > List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines > > List Archives: https://lists.fedoraproject.org/archives/list/389-users@xxxxxxxxxxxxxxxxxxxxxxx > > Do not reply to spam, report it: https://pagure.io/fedora-infrastructure/new_issue > > -- > Sincerely, > > William Brown > > Senior Software Engineer, > Identity and Access Management > SUSE Labs, Australia > -- _______________________________________________ 389-users mailing list -- 389-users@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe send an email to 389-users-leave@xxxxxxxxxxxxxxxxxxxxxxx Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/389-users@xxxxxxxxxxxxxxxxxxxxxxx Do not reply to spam, report it: https://pagure.io/fedora-infrastructure/new_issue