On Wed, Apr 12, 2017 at 09:34:59AM +0200, Christoph Kaminski wrote:
> is this ok as config for sssd on centos 7 AND 6?
> cache_credentials = True
> krb5_store_password_if_offline = True
> id_provider = ipa
> ldap_tls_cacert = /etc/ipa/ca.crt
You can drop this line as well, it's the default for the AD provider.
> services = nss, pam, ssh, sudo, autofs
> config_file_version = 2
> domains = hso
> I mean it works but would I get any problems with it?
No, the configs are supposed to be minimal.
You can even drop the empty service sections like [nss].
Manage your subscription for the Freeipa-users mailing list:
Go to http://freeipa.org for more info on the project