Am 28.08.2014 17:11, schrieb steve:
On Thu, 2014-08-28 at 16:56 +0200, Stefan Schäfer wrote: .
Any Idea how to get this working?
We think your stack is wrong. Here is one which works:
auth sufficient pam_unix2.so auth required pam_sss.so use_first_pass account requisite pam_unix2.so account sufficient pam_localuser.so account required pam_sss.so use_first_pass
Do you have the order right?
sssd-users mailing list sssd-users@lists.fedorahosted.org https://lists.fedorahosted.org/mailman/listinfo/sssd-users
PAM works. The problem was caused by a bug in sssd 1.12. "ad_gpo_access_control = disabled" solved the problem.
Stefan