I want to do domain authentification on a server and give some users or AD security group root privileges. And some users deny access to the server.
I've already joined the server to domain using Yast -> Windows Domain Membership. Now domain users can login to the server.
How can I give they root rights? I added string into visudo :
dvsbs\\abdv ALL = (root) ALL
but it doesn't work, I tried su - and error appers: su: User not known to the underlying authentication module
And in log messages: su: pam_winbind(su-l:auth): request wbcLogonUser failed: WBC_ERR_AUTH_ERROR, PAM error: PAM_USER_UNKNOWN (10), NTSTATUS: NT_STATUS_NO_SUCH_USER, Error message was: No such user
I can't look up any user in Yast's module User and Group Administration because filter can't establish connection (see screenshots).
2017-12-19_12-19-36.png
2017-12-19_12-23-47.png
wbinfo -t says succeeed. I didn't use sssd.