[SOLVED] LDAP Auth. After Login, primary group changes immediately to "user"

Hello everybody,

Please, describe the problem here and provide additional information below (if applicable) …

We are managing our admin accounts (eg for this case the account is named adminaccount) via ldap driver in OpenNebula. They´re supposed to get the admin view for every VDC. The admin accounts are linked to the oneadmin group:

All users in the group should see the admin view. Building it is fine. When the user logs in, the primary group changes immediately to the user group. I dont get it :slight_smile:

Versions of the related components and OS (frontend, hypervisors, VMs):

vOneCloud 3.0.2, OpenNebula 5.4.1

Steps to reproduce:

Befor the Login:

     [root@xxxx one]# oneuser show 5 -x
<USER>
  <ID>5</ID>
  <GID>0</GID>
  <GROUPS>
    <ID>0</ID>
  </GROUPS>
  <GNAME>oneadmin</GNAME>
  <NAME>adminaccount</NAME>
  <PASSWORD><![CDATA[-]]></PASSWORD>
  <AUTH_DRIVER><![CDATA[ldap]]></AUTH_DRIVER>
  <ENABLED>1</ENABLED>
  <TEMPLATE>
    <SUNSTONE>
      <LANG><![CDATA[de]]></LANG>
    </SUNSTONE>
    <TOKEN_PASSWORD><![CDATA[bf565b644c3a47a8bf3743acc7e58b8511ea188a]]></TOKEN_PASSWORD>
  </TEMPLATE>
  <DATASTORE_QUOTA/>
  <NETWORK_QUOTA/>
  <VM_QUOTA/>
  <IMAGE_QUOTA/>
  <DEFAULT_USER_QUOTAS>
    <DATASTORE_QUOTA/>
    <NETWORK_QUOTA/>
    <VM_QUOTA/>
    <IMAGE_QUOTA/>
  </DEFAULT_USER_QUOTAS>
</USER>

Current results:

And now the user logs in, nothing special at all i guess.

[root@xxxx one]# oneuser show 5 -x
<USER>
  <ID>5</ID>
  <GID>1</GID>
  <GROUPS>
    <ID>1</ID>
  </GROUPS>
  <GNAME>users</GNAME>
  <NAME>adminaccount</NAME>
  <PASSWORD><![CDATA[-]]></PASSWORD>
  <AUTH_DRIVER><![CDATA[ldap]]></AUTH_DRIVER>
  <ENABLED>1</ENABLED>
  <TEMPLATE>
    <SUNSTONE>
      <LANG><![CDATA[de]]></LANG>
    </SUNSTONE>
    <TOKEN_PASSWORD><![CDATA[bf565b644c3a47a8bf3743acc7e58b8511ea188a]]></TOKEN_PASSWORD>
  </TEMPLATE>
  <DATASTORE_QUOTA/>
  <NETWORK_QUOTA/>
  <VM_QUOTA/>
  <IMAGE_QUOTA/>
  <DEFAULT_USER_QUOTAS>
    <DATASTORE_QUOTA/>
    <NETWORK_QUOTA/>
    <VM_QUOTA/>
    <IMAGE_QUOTA/>
  </DEFAULT_USER_QUOTAS>
</USER>

As you can see, the <GNAME>users</GNAME> changes from <GNAME>oneadmin</GNAME>. How can we resolve this? Which information do you need in addition?

Never mind, rebooting the OpenNebula service solved the issue.