From owner-freebsd-questions@FreeBSD.ORG  Wed Dec  5 09:01:54 2012
Return-Path: <owner-freebsd-questions@FreeBSD.ORG>
Delivered-To: freebsd-questions@freebsd.org
Received: from mx1.freebsd.org (mx1.freebsd.org [69.147.83.52])
 by hub.freebsd.org (Postfix) with ESMTP id 2F002E9E
 for <freebsd-questions@freebsd.org>; Wed,  5 Dec 2012 09:01:54 +0000 (UTC)
 (envelope-from alexey.w.tyurikov@gmail.com)
Received: from mail-we0-f182.google.com (mail-we0-f182.google.com
 [74.125.82.182])
 by mx1.freebsd.org (Postfix) with ESMTP id B4C798FC1E
 for <freebsd-questions@freebsd.org>; Wed,  5 Dec 2012 09:01:53 +0000 (UTC)
Received: by mail-we0-f182.google.com with SMTP id u54so2439519wey.13
 for <freebsd-questions@freebsd.org>; Wed, 05 Dec 2012 01:01:52 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113;
 h=mime-version:sender:date:x-google-sender-auth:message-id:subject
 :from:to:content-type;
 bh=r1yrj7zjosy57iTMeoefwoIAqOPh+3uQl3L5UQeyj4U=;
 b=NacPnVP4MR2eBL8n8yzCVAx4oYv9S0ByfFYqfcaKHM9qogmCkTsBietm6oc864cnKP
 ekVu+Epd/1/b9O8n6b6dUF8IYV2Y98AgNZhU27S05Cbr+zDeJnpmATG6Vgu93vUxwm5d
 tyjeIt6jmPNhEcRneau7smqFcFGQePw5g0/n2RU2CP90LrBLwtAIwfDIVj6bRTXIgOYj
 HD2tZ3p0pL9QPplleI8v+H8NQ0vWh3hZmzzh20F+yD9Ae/gAfxrDMGTRMpKsSegzfvO9
 kI8rFzuPwGAixlvCccqo7USUREnTzrEa76enIimVVLNza0MFfjcOqvDM0IYbCPJxzfQY
 8vnA==
MIME-Version: 1.0
Received: by 10.180.81.170 with SMTP id b10mr1820517wiy.16.1354698112625; Wed,
 05 Dec 2012 01:01:52 -0800 (PST)
Sender: alexey.w.tyurikov@gmail.com
Received: by 10.194.51.67 with HTTP; Wed, 5 Dec 2012 01:01:52 -0800 (PST)
Date: Wed, 5 Dec 2012 10:01:52 +0100
X-Google-Sender-Auth: A6OWGVxLcGXN2QF3i94LhI0XDR0
Message-ID: <CANJVYo+dskrCiisHYU1KJsR6i5fwew8xfeK=7P3sdWVM1AErPA@mail.gmail.com>
Subject: sssd 1.8.4
From: Alexey Tyurikov <alexey.tyurikov@gmail.com>
To: freebsd-questions@freebsd.org
Content-Type: text/plain; charset=ISO-8859-1
X-Content-Filtered-By: Mailman/MimeDel 2.1.14
X-BeenThere: freebsd-questions@freebsd.org
X-Mailman-Version: 2.1.14
Precedence: list
List-Id: User questions <freebsd-questions.freebsd.org>
List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, 
 <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe>
List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions>
List-Post: <mailto:freebsd-questions@freebsd.org>
List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help>
List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, 
 <mailto:freebsd-questions-request@freebsd.org?subject=subscribe>
X-List-Received-Date: Wed, 05 Dec 2012 09:01:54 -0000

Dear list members,

does anyone use sssd 1.8.4? I try to set it up on on FreeBSD 9.1-RC3 but
get no success. First of all, there is no log files under /var/log/sssd, so
that I can not see, what is going wrong. I've edited two config files and
expect to be able to list LDAP(SAMBA4) users but it doesn't work. Do I miss
something here?



---------------------- sssd.conf ------------------------------
[sssd]
config_file_version = 2
reconnection_retries = 3
sbus_timeout = 30
services = nss, pam
domains = DOM

[nss]
filter_groups = root
filter_users = root
reconnection_retries = 3

[pam]
reconnection_retries = 3

[domain/DOM]
debug_level = 7

# kerberos
auth_provider = krb5
chpass_provider = krb5
krb5_server = srv.test.dom
krb5_realm = TEST.DOM
ldap_force_upper_case_realm = true

# ldap
id_provider = ldap
timeout = 20
ldap_uri = ldap://srv.test.dom
ldap_search_base = DC=test,DC=dom
ldap_schema = rfc2307bis

ldap_default_bind_dn = CN=Administrator,CN=Users,DC=test,DC=dom
ldap_default_authtok_type = password
ldap_default_authtok = secret

ldap_user_uid_number = uidNumber
ldap_user_gid_number = gidNumber
ldap_user_object_class = user
ldap_group_object_class = group
ldap_user_home_directory = unixHomeDirectory
ldap_user_principal = userPrincipalName
ldap_account_expire_policy = ad
enumerate = true
--------------------------------------------------------------------

-------------------- nsswitsch.conf --------------------------
group: files sss
group_compat: nis
hosts: files dns
networks: files
passwd: files sss
passwd_compat: nis
shells: files
services: compat
services_compat: nis
protocols: files
rpc: files
---------------------------------------------------------------------


I would be very appreciated for any help and hints.


Best regards

-- 
Alexey Tyurikov