Advertisement
Guest User

Untitled

a guest
Jun 17th, 2019
115
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 1.54 KB | None | 0 0
  1. [sssd]
  2. services = nss, pam
  3. domains = DOMAIN.COM
  4. debug_level = 10
  5.  
  6. [nss]
  7. debug_level = 10
  8.  
  9. [pam]
  10. debug_level = 10
  11.  
  12. [domain/DOMAIN.COM]
  13. debug_level = 10
  14. id_provider = ldap
  15. auth_provider = krb5
  16. access_provider = ldap
  17. chpass_provider = krb5
  18. dyndns_update = False
  19. realmd_tags = manages-system joined-with-samba
  20. cache_credentials = False
  21. enumerate = False
  22. entry_cache_timeout = 86400
  23. min_id = 1000000
  24. default_shell = /bin/bash
  25. fallback_homedir = /home/%u@%d
  26. use_fully_qualified_names = True
  27.  
  28. #LDAP Configuration
  29. ldap_uri = ldap://ldapserver:389
  30. ldap_search_base = dc=domain,dc=com
  31. ldap_user_search_base = dc=domain,dc=com
  32. ldap_group_search_base = dc=domain,dc=com
  33. ldap_id_mapping = True
  34. ldap_idmap_range_min = 100000
  35. ldap_idmap_range_max = 2000100000
  36. ldap_idmap_range_size = 2000000000
  37. ldap_idmap_default_domain = <DOMAIN>
  38. ldap_access_filter = &(objectClass=krbPrincipal)
  39. ldap_user_object_class = krbPrincipal
  40. ldap_user_name = krbPrincipalName
  41. ldap_user_principal = krbPrincipalName
  42. ldap_user_fullname = krbPrincipalName
  43. ldap_user_uid_number = krbPrincipalName
  44. ldap_user_objectsid = krbPrincipalName
  45.  
  46. #KRB5 Configuration
  47. krb5_server = kdc_server
  48. krb5_realm = DOMAIN.COM
  49.  
  50. dn: krbPrincipalName=test-user2@DOMAIN.COM,cn=DOMAIN.COM,cn=kerberos,dc=domain,dc=com
  51. ufn: test-user2@DOMAIN.COM, DOMAIN.COM, kerberos, DOMAIN.com
  52. krbLoginFailedCount: 0
  53. krbPrincipalName: test-user2@DOMAIN.COM
  54. krbPrincipalKey:: ...
  55. krbLastPwdChange: 20190524234020Z
  56. krbExtraData:: ...
  57. krbExtraData:: ...
  58. objectClass: krbPrincipal
  59. objectClass: krbPrincipalAux
  60. objectClass: krbTicketPolicyAux
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement