Hi,
this simple patch allows using AD objectSid as uid source making it
possible to use SSSD against AD instances which do not have Identity
Management for Unix Role Service enabled. The mapping matches winbind's
idmap_rid(8) behaviour. If ldap_user_uid_number is not objectSid then
nothing changes.
https://fedorahosted.org/sssd/ticket/996
Cheers,
--
Marko Myllynen