authd icon indicating copy to clipboard operation
authd copied to clipboard

Issue: User groups are not synced

Open BalazsSzekeres opened this issue 1 year ago • 5 comments

Is there an existing issue for this?

  • [X] I have searched the existing issues and found none that matched mine

Describe the issue

After a user has logged in using SSH, I have added him to a new group in Microsoft Entra. When the user logs out, and then log in again, the new group is not synced on the on-premise machine.

Steps to reproduce

  1. Login user via SSH.
  2. Add it to a new group.
  3. Login again, and run groups.

System information and logs

No response

Double check your logs

  • [X] I have redacted any sensitive information from the logs

BalazsSzekeres avatar Oct 20 '24 13:10 BalazsSzekeres

Thanks for the report. We believe that this issue is already fixed in the authd-msentraid snap from the edge channel. Could you please try following these instructions to try out the snap from the edge channel? Don't forget to switch back to the stable channel afterwards.

adombeck avatar Oct 21 '24 09:10 adombeck

This does not seem to be fixed in the edge channel. i'm still not seeing groups

namato1 avatar Dec 02 '24 20:12 namato1

Are you sure that you don't see groups which you add the user to in Microsoft Entra? That should have been solved by https://github.com/ubuntu/authd/issues/520. I can confirm in my tests that I see those groups.

What does currently not work is adding the user to groups locally - that's https://github.com/ubuntu/authd/issues/576 which we plan to fix with a release scheduled for next week.

adombeck avatar Dec 02 '24 22:12 adombeck

Apologies, I thought i was on edge, but forgot I wiped and imaged the machine again. Switched to edge and it is syncing

namato1 avatar Dec 02 '24 22:12 namato1

It seems groups are now syncing but the groups/GID are not updating if a group has been modified(via Entra) which in turn prevents a user from logging in. Returns "No result matching 'XYZ' in GroupByID"

junebugin avatar Jan 13 '25 17:01 junebugin