Quantcast
Channel: All Centrify Express posts
Viewing all articles
Browse latest Browse all 1833

Re: Newly added AD accounts are not visible on Linux servers

$
0
0

,

 

You're posting in the Express forums; you should be posting in the Server Suite forums.  If you don't have an account for the Customer Support Center, contact your Centrify rep and they'll be happy to set you up.

As a commercial customer you are entitled to support based on your contract.

 

In addition, if your implementation was performed by PS, you should have a playbook that outlines how to provision users correctly.

 

Users not being visible in certain systems may be an intentional part of your design (for least access/least privilege).

 

As baseline troubleshooting

If using ZPA:

  • Make sure the ZPA service is running at your SLA-driven intervals
  • Make sure the user belongs to the AD group that grants the UNIX profile
  • Make sure the user belongs to the AD group that grants him/her a role in the scope of systems

If you've recently created new roles

  • Make sure that they have the "User is visible" attribute.
  • Make sure they have at least a PAM right (if intended) and a command (optionally, if intended).
  • Make sure that the role-assignment that grants the role is nested with the provisioning group for ZPA.

 

If you are new or are inheriting a Centrify enviornment, here's a few tips:

http://community.centrify.com/t5/Community-Tech-Blog/10-Tips-I-Inherited-a-Centrify-Server-Suite-Deployment-What-s/ba-p/23891

 

R.P

 


Viewing all articles
Browse latest Browse all 1833

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>