If there is no TLS CA Cert available for communication with the LDAP server (or /etc/ldap.conf has "ssl off"), SSSD will not authenticate.
This was fixed with commit e7514def89cbbf52cc49fbc0f8ad6fe642304331. The option tls_reqcert for the native LDAP backend can be used in the same way as the corresponding option from /etc/ldap.conf
fixedin: => 0.4.0 resolution: => fixed status: new => closed
Fields changed
rhbz: => 0
Metadata Update from @sgallagh: - Issue assigned to sbose - Issue set to the milestone: SSSD 1.0
SSSD is moving from Pagure to Github. This means that new issues and pull requests will be accepted only in SSSD's github repository.
This issue has been cloned to Github and is available here: - https://github.com/SSSD/sssd/issues/1073
If you want to receive further updates on the issue, please navigate to the github issue and click on subscribe button.
subscribe
Thank you for understanding. We apologize for all inconvenience.