Fedora 22: SSSD Active Directory authentication

Stephen Gallagher sgallagh at redhat.com
Wed May 27 18:35:29 UTC 2015


On Wed, 2015-05-27 at 10:58 -0400, Frank Pikelner wrote:
> Hello,
> 
> Is anyone successfully using SSSD to authenticate user logins into 
> Fedora 22 against Active Directory. More specifically using AD 
> provider (versus LDAP) in their SSSD config? 
> 
> If possible, please share your config (less any confidential info) 
> and any lessons learned.
> 


The easiest way to get this done is to use realmd:

realm join <ad_server>

That should set things up reasonably well. If you also want to use AD
GPOs for access control, set "ad_gpo_access_control = enforcing"

Also make sure your system's DNS server is capable of resolving all of
your domain controllers.
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 181 bytes
Desc: This is a digitally signed message part
URL: <http://lists.fedoraproject.org/pipermail/users/attachments/20150527/6eed8578/attachment.sig>


More information about the users mailing list