users.allow contains shortname of group instead of <domain>\<samaccountname> format to support cross forest authentication
<domain>\<samaccountname> format in users.allow was not supported before QAS 3.1.2.52
RESOLUTION 1:
Manually edit the users.allow file to contain <domain>\samaccountname of the group
RESOLUTON 2:
If the setting is being pushed out via group policy, ensure the QAS version installed is greater than QAS 3.2. We recommend the latest version of QAS to be installed.
3.1.2.52
* users.allow now supports group entries in <domain>\<samaccountname> format,
so when dealing with multiple cross-domain groups with the same
samaccountname, the correct one can be specified.
© 2024 One Identity LLC. ALL RIGHTS RESERVED. Feedback Terms of Use Privacy Cookie Preference Center