-
Notifications
You must be signed in to change notification settings - Fork 7
/
Copy paths-template.txt
53 lines (46 loc) · 1.23 KB
/
s-template.txt
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
[sssd]
config_file_version = 2
services = nss, pam
domains = LDAP
[nss]
filter_users = root,named,avahi,haldaemon,dbus,radiusd,news,nscd
filter_groups =
[pam]
[domain/LDAP]
id_provider = ldap
auth_provider = ldap
chpass_provider = ldap
sudo_provider = ldap
enumerate = true
cache_credentials = false
ldap_schema = rfc2307bis
ldap_uri = ldap://leader.example.org:389
ldap_search_base = dc=example,dc=org
ldap_user_search_base = dc=example,dc=org
access_provider = ldap
ldap_access_filter = (objectClass=posixAccount)
min_id = 1
max_id = 0
ldap_user_object_class =
ldap_user_name =
ldap_user_uuid =
ldap_user_shell =
ldap_user_home_directory =
ldap_user_uid_number =
ldap_default_bind_dn = cn=admin,dc=example,dc=org
# this is the password
ldap_default_authtok = admin
ldap_group_search_base = dc=example,dc=org
ldap_group_object_class = posixGroup
ldap_group_name = cn
ldap_user_gid_number = gidNumber
ldap_group_gid_number = gidNumber
ldap_group_uuid = entryUUID
ldap_group_member = memberUid
ldap_access_order = filter
# just because we are testing
ldap_auth_disable_tls_never_use_in_production = true
ldap_id_use_start_tls = false
ldap_tls_reqcert = never
ldap_tls_cacert = /etc/ssl/certs/ca-certificates.crt
use_fully_qualified_names = false