sssd: Initial version of module
This commit is contained in:
parent
fa6062de18
commit
019dd4978e
4 changed files with 53 additions and 0 deletions
23
roles/sssd/templates/sssd.conf.j2
Normal file
23
roles/sssd/templates/sssd.conf.j2
Normal file
|
@ -0,0 +1,23 @@
|
|||
[sssd]
|
||||
config_file_version = 2
|
||||
services = nss, pam
|
||||
domains = {{ kerberos_realm }}
|
||||
|
||||
[nss]
|
||||
|
||||
[pam]
|
||||
|
||||
[domain/{{ kerberos_realm }}]
|
||||
id_provider = ldap
|
||||
auth_provider = krb5
|
||||
chpass_provider = ldap
|
||||
ldap_uri = ldaps://{{ ldap_server[0] }}
|
||||
ldap_search_base = {{ ldap_basedn }}
|
||||
ldap_schema = rfc2307bis
|
||||
ldap_group_member = uniqueMember
|
||||
ldap_id_use_start_tls = False
|
||||
ldap_tls_reqcert = demand
|
||||
ldap_sasl_mech = EXTERNAL
|
||||
ldap_tls_cert = {{ tls_certs }}/{{ inventory_hostname }}.crt
|
||||
ldap_tls_key = {{ tls_private }}/{{ inventory_hostname }}.key
|
||||
krb5_realm = {{ kerberos_realm }}
|
Loading…
Add table
Add a link
Reference in a new issue