2009/9/29 Dan Burkland dburklan@nmdp.org:
I experienced the same problem and found a solution. In your /etc/ldap.conf file (which I had the ldap.conf in /etc/openldap symlinked to), add the following line to the bottom of the file:
Due to the ssh problems, I can't check the actual machine at the moment, but the machine I copied the config from already has the following:
nss_initgroups_ignoreusers root,ldap,named,avahi,haldaemon,dbus,radvd,tomcat,radiusd,news,mailman,nscd,gdm
I'll check the machine's config as soon as I can get access to it.
Ben