I filed this issue a week or so ago: https://pagure.io/SSSD/sssd/issue/4017
In essence, it would seem that if KCM already has credentials in the cache, then KCM will never discard those credentials in favor of new credentials being forwarded via sshd, even if the credentials in the cache are expired. This is a showstopper bug for using KCM in any type of enterprise environment, where remote connections are frequent. Have I misunderstood what is actually happening? Or am I correct in that this a bug with KCM? _______________________________________________ sssd-users mailing list -- sssd-users@lists.fedorahosted.org To unsubscribe send an email to sssd-users-le...@lists.fedorahosted.org Fedora Code of Conduct: https://getfedora.org/code-of-conduct.html List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedorahosted.org/archives/list/sssd-users@lists.fedorahosted.org