On Wed, Sep 18, 2019 at 04:43:18PM +0200, Hinrikus Wolf wrote:
> Hi,
>
>
> this is our sssd.conf
>
> > [sssd]
> > domains = fsmpi.rwth-aachen.de
> > config_file_version = 2
> > services = nss, pam
> >
> > [pam]
> > offline_credentials_expiration = 1
> > offline_failed_login_attempts = 3
> > offl
Hi,
I recently encountered issues where logins on Linux clients using SSSD
and the AD provider, pointed directly to an AD server were randomly
slow. Randomly meaning, some clients experienced no slowness at all,
other clients consistently had slow logins (30+ seconds sometimes), and
yet other cli
On Thu, Sep 12, 2019 at 12:50 PM Hinrikus Wolf
wrote:
> I have implemented the ldap_saerch_base. But the disabled users
> are still listed in
>
> > getent passwd
>
> That means they are present for PAM.
Not necessarily.
If you did not wipe the sssd cache after you changed the
configuration, sss
Hi,
this is our sssd.conf
> [sssd]
> domains = fsmpi.rwth-aachen.de
> config_file_version = 2
> services = nss, pam
>
> [pam]
> offline_credentials_expiration = 1
> offline_failed_login_attempts = 3
> offline_failed_login_delay = 0
>
> [domain/fsmpi.rwth-aachen.de]
> ad_domain = fsmpi.rwth-aache