> On 20 Nov 2018, at 03:13, Olivier JUDITH <gnu...@gmail.com> wrote: > > Hi, > > It is possible . i'm using Pam PTA to authenticate AD user from SSO > application. > it works perfectly. the configurationis SSO app +> 389 + SSSD -> AD > As mentionned by Mark Reynolds use PAM PTA and filter with pamFilter .
As a note, remember that SSSD is single threaded and may become a performance bottleneck. You could have to consider horizontal RO replica to scale your logins. > > Contact me if you need more information. If you want to write up a how-to for our website that would be great, I’d help review it and get it commited > _______________________________________________ > 389-users mailing list -- 389-users@lists.fedoraproject.org > To unsubscribe send an email to 389-users-le...@lists.fedoraproject.org > Fedora Code of Conduct: https://getfedora.org/code-of-conduct.html > List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines > List Archives: > https://lists.fedoraproject.org/archives/list/389-users@lists.fedoraproject.org — Sincerely, William _______________________________________________ 389-users mailing list -- 389-users@lists.fedoraproject.org To unsubscribe send an email to 389-users-le...@lists.fedoraproject.org Fedora Code of Conduct: https://getfedora.org/code-of-conduct.html List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/389-users@lists.fedoraproject.org