[SSSD-users] Re: Concerning "ldap_idmap_default_domain_sid", "[domain/default]", and "ldap_idmap_default_domain"

2018-09-05 Thread Sumit Bose
On Tue, Sep 04, 2018 at 06:49:15AM -0400, Lawrence Kearney wrote: > I beleive I understand the use of the the "ldap_idmap_default_domain_sid" > directive. Most simply the MURMUR algorithm will be disabled and the domain > configuration designated as the "default" domain will be assigned to slice >

[SSSD-users] Re: ldap slices in sssd.conf

2018-09-05 Thread Mote, Todd
I finally rested on just ldap_idmap_default_domain = domain.local ldap_idmap_default_domain_sid = S-1-5-21-527237240-962098450-7253x ldap_idmap_range_min = 10 ldap_idmap_range_size = 2000 and it works just fine. I use a 10 digit number to satisfy

[SSSD-users] Re: ldap slices in sssd.conf

2018-09-05 Thread Sumit Bose
On Fri, Aug 24, 2018 at 02:45:57PM +0200, Chris Kowalczyk wrote: > Hello All, > > I have a question regarding ldap slices defined in sssd configuration. > > Is it fine to have just one group defined by ldap_idmap_range_min, > ldap_idmap_range_max and ldap_idmap_range_size parameters? So,

[SSSD-users] Re: Concerning "ldap_idmap_default_domain_sid", "[domain/default]", and "ldap_idmap_default_domain"

2018-09-05 Thread Lawrence Kearney
... that helps, thanking you! -- lawrence On Wed, Sep 5, 2018 at 12:18 PM Sumit Bose wrote: > On Tue, Sep 04, 2018 at 06:49:15AM -0400, Lawrence Kearney wrote: > > I beleive I understand the use of the the "ldap_idmap_default_domain_sid" > > directive. Most simply the MURMUR algorithm will

[SSSD-users] Re: ldap slices in sssd.conf

2018-09-05 Thread Chris Kowalczyk
Any thoughts about it? Anyone? Anything? :) Regards, Chris On 08/24/2018 02:45 PM, Chris Kowalczyk wrote: > Hello All, > > I have a question regarding ldap slices defined in sssd configuration. > > Is it fine to have just one group defined by ldap_idmap_range_min, > ldap_idmap_range_max and

[SSSD-users] Looking for SSSD/AD consultant

2018-09-05 Thread Bastian Rosner
Hi, We are looking for a consultant to help us integrating SSSD on Debian in a multi-domain Windows Active Directory (no IPA) infrastructure. In case you are interested, feel free to contact me directly. Regards, Bastian ___ sssd-users mailing list