#3510 SSSD vs AD / SASL postfix cyrus
Closed: Invalid 6 years ago Opened 6 years ago by edg973.

Hello,
I am very confused because this is maybe not the good place to post my requests about SSSD.
I was using SSSD last year and I was refering to https://fedorahosted.org/sssd/wiki/ ; this wiki does not exist. So as I do not know exactly to post my request, I tried here.

  1. So my questions are about where to find reference documentations about SSSD, are the only sites for documentation on RedHat Documentation ? Community documentation ? And https://pagure.io/docs/SSSD/sssd/ now ?

  2. There was a wiki on how to join a linux on a Active Directory before https://fedorahosted.org/sssd/wiki/Configuring_sssd_with_ad_server#no1
    It was well detailed, with a link to a powershell script "create-sssd-keytab.ps1" to create keytab file on Windows server and import it on linux side. Is that documentation removed ? Should we use realm command instead fo linux integration in AD ?

  3. I am looking to make work a postfix / cyrus mail server with AD authentication. For that, I planned to use sasl with pam.
    I am supposing PAM to work with SSSD vs AD. Can sasl work with SSSD in this configuration ?

Thank you very much all help, Best Regards


fedorahosted was shut down and so far not all pages are converted into the new format used by pagure.

In the meantime you can find the old pages at archive.org https://web-beta.archive.org/web/20160328145724/https://fedorahosted.org/sssd/wiki/Configuring_sssd_with_ad_server

HTH

bye,
Sumit

Hello,
Thank you, It is great to find back these links because I am accustomed to them.

Otherwise, Is there a forum for SSSD users, where I could ask informations concerning postfix cyrus sasl vs sssd authentication ?

I would like my users using the mail server postfix and imap server cyrus able to authenticate against AD. It suppose postfix and cyrus configured with sasl, and sasl configured to use pam.
Pam should be configured to used SSSD against AD....

[Postfix / Cyrus <==> sasl (pam) <==> SSSD] .... <===> [MY Microsoft Windows Server Active Directory]

I would like if someone has already used this configuration. Does it work ?

I think I could as well use FreeIPA instead of Windows AD server, if SSSD is configured in this way. But I am not very used with FreeIPA and AD trust for the moment.

Best Regards.

Hello,
thank you. I will use the sssd-user list sssd-users@lists.fedorahosted.org

Metadata Update from @jhrozek:
- Issue close_status updated to: Invalid
- Issue status updated to: Closed (was: Open)

6 years ago

SSSD is moving from Pagure to Github. This means that new issues and pull requests
will be accepted only in SSSD's github repository.

This issue has been cloned to Github and is available here:
- https://github.com/SSSD/sssd/issues/4536

If you want to receive further updates on the issue, please navigate to the github issue
and click on subscribe button.

Thank you for understanding. We apologize for all inconvenience.

Login to comment on this ticket.

Metadata