[Likewise-open-discuss] Limit to require_membership_of parameter?

Gerald (Jerry) Carter jerry at samba.org
Wed Aug 20 10:30:22 PDT 2008


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Lanthier wrote:
> Hi,
> 
> I'm trying to use the require_membership_of 
> parameter in the /etc/security/pam_lwidentity.conf file.
> 
> At a first glance, it works correctly. But as soon as 
> I add a 22th group name in the list, I obtain an error
> when I want to connect with a user effectively member of
> one of the groups.
> 
> I wonder if there is a known limit for the number 
> of elements (SID/group/user) that we can enumerate
> for this parameter?

Off the top of my head it's 1024 byte string length IIRC.
You should just be able to nested all those groups into
one group in AD though to work around the lnegth limit.




cheers, jerry
- --
=====================================================================
Samba                                    ------- http://www.samba.org
Likewise Software          ---------  http://www.likewisesoftware.com
"What man is a man who does not make the world better?"      --Balian
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.6 (GNU/Linux)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org

iD8DBQFIrFSfIR7qMdg1EfYRAt6wAJ9cDCOt7T8le8crJQnrG/b6SBHzTACdGfn6
ODQh40EuMxGPfPFoWzOgfBs=
=71FJ
-----END PGP SIGNATURE-----


More information about the Likewise-open-discuss mailing list