Client Support for Trusts
by David L
I'm looking for clarity about SSSD's *client-side* support for trusts.
1. Does SSSD support login for cross-domain (e.g., parent/child) trusts?
2. Does SSSD support login for users in trusted forests?
2a. If not, is there a workaround?
3. Does SSSD's group membership reporting include users from trusted forests?
4. Does SSSD's user information include groups in trusted forests?
5. Does SSSD require additional support from additional components to support login of users in trusted forests?
6. Does SSSD support two-way trusts?
6a. If not, is there a workaround?
1 month, 4 weeks
Cloud Kerberos
by David L
Does SSSD work with Microsoft's newish Cloud Kerberos? If not, are there any plans to?
2 months, 1 week
Basic Question: C Using SASL or SPNEGO
by David L
I have a couple basic questions about using OpenLDAP with SSSD in a C/C++ program. Since I think SSSD uses OpenLDAP to do this already within it's service, I thought y'all would be the ones to task. Pardon my ignorance. If you know the answer in Python/native interop, that'll work to, I can translate.
1. On a domain joined machine that has any other needed configuration, how do I call and configure OpenLDAP so it will use the SSSD machine account to authenticate with the AD server?
2. As above, but how do I specify OpenLDAP to authenticate using SPNEGO?
2 months, 2 weeks