
The following roles are available: fvs-sssd Configures LDAP as ID and AUTH provider using sssd. fvs-mount Provides all private user directories on login with pam_mount. Machines provided so far are: The server providing the home directory: fvs-home.yml A standard client: fvs-client.yml
22 lines
326 B
Django/Jinja
22 lines
326 B
Django/Jinja
[sssd]
|
|
domains = LDAP
|
|
config_file_version = 2
|
|
services = nss, pam
|
|
|
|
[nss]
|
|
filter_groups = root
|
|
filter_users = root
|
|
|
|
[pam]
|
|
|
|
[domain/LDAP]
|
|
id_provider = ldap
|
|
ldap_uri = ldaps://{{ ldap_server }}/
|
|
ldap_search_base = {{ basedn }}
|
|
|
|
auth_provider = ldap
|
|
auto_private_groups = true
|
|
|
|
cache_credentials = true
|
|
|
|
ldap_tls_reqcert = never
|