diff --git a/sss.ldif b/sss.ldif new file mode 100644 index 0000000..626b081 --- /dev/null +++ b/sss.ldif @@ -0,0 +1,7 @@ +dn: ou=services,dc=example,dc=fr +objectclass: organizationalUnit + +dn: uid=sssd,ou=services,dc=example,dc=fr +objectclass: simplesecurityobject +objectclass: account +userpassword: 123Soleil \ No newline at end of file diff --git a/sssd.conf b/sssd.conf new file mode 100644 index 0000000..6ab2d72 --- /dev/null +++ b/sssd.conf @@ -0,0 +1,26 @@ +[sssd] +services = nss, pam +domains = example.fr +[nss] +filter_users = root +filter_groups = root +[domain/example.fr] +cache_credentials = True +id_provider = ldap +auth_provider = ldap +ldap_uri = ldaps://ldx1.formation.opendoor.fr +ldap_tls_reqcert = demand +ldap_search_base = dc=example,dc=fr +ldap_default_bind_dn = uid=sssd,ou=services,dc=example,dc=fr +ldap_default_authtok_type = obfuscated_password +ldap_default_authtok = AAAQAHNUVvgclMY0ywC1NekfsXqG+u754Aa/dMiRLCLKHiZ6rA8IRmukHLOU/KW6ZL3zrO8Fs+lLYZNzRmNG1aJOvDgAAQID + +access_provider = permit +sudo_provider = ldap +chpass_provider = ldap +autofs_provider = ldap +resolver_provider = ldap +[pam] +offline_credentials_expiration = 1 +offline_failed_login_attempts = 3 +offline_failed_login_delay = 5