I am hitting this bug as well, removing ldap from group in nsswitch isn't much of a solution, you are basically disabling getting groups through LDAP.
I am hitting this bug as well, removing ldap from group in nsswitch isn't much of a solution, you are basically disabling getting groups through LDAP.