summaryrefslogtreecommitdiffstats
path: root/src/config
diff options
context:
space:
mode:
authorStephen Gallagher <sgallagh@redhat.com>2010-12-20 16:05:14 -0500
committerStephen Gallagher <sgallagh@redhat.com>2010-12-21 17:05:51 -0500
commit2a2f642aae37e3f41cbbda162a74c2b946a4521f (patch)
tree146d6b2ec11a27fb0830a4c48f65cc36a07cef01 /src/config
parent6ff6ccd3eec35217708870b0fe7a6362e97de95f (diff)
downloadsssd-2a2f642aae37e3f41cbbda162a74c2b946a4521f.tar.gz
sssd-2a2f642aae37e3f41cbbda162a74c2b946a4521f.tar.xz
sssd-2a2f642aae37e3f41cbbda162a74c2b946a4521f.zip
Add authorizedService support
https://fedorahosted.org/sssd/ticket/670
Diffstat (limited to 'src/config')
-rw-r--r--src/config/SSSDConfig.py1
-rw-r--r--src/config/etc/sssd.api.d/sssd-ldap.conf1
2 files changed, 2 insertions, 0 deletions
diff --git a/src/config/SSSDConfig.py b/src/config/SSSDConfig.py
index de7f66a6a..b11771788 100644
--- a/src/config/SSSDConfig.py
+++ b/src/config/SSSDConfig.py
@@ -166,6 +166,7 @@ option_strings = {
'ldap_user_shadow_inactive' : _('shadowInactive attribute'),
'ldap_user_shadow_expire' : _('shadowExpire attribute'),
'ldap_user_shadow_flag' : _('shadowFlag attribute'),
+ 'ldap_user_authorized_service' : _('Attribute listing authorized PAM services'),
'ldap_user_krb_last_pwd_change' : _('krbLastPwdChange attribute'),
'ldap_user_krb_password_expiration' : _('krbPasswordExpiration attribute'),
'ldap_pwd_attribute' : _('Attribute indicating that server side password policies are active'),
diff --git a/src/config/etc/sssd.api.d/sssd-ldap.conf b/src/config/etc/sssd.api.d/sssd-ldap.conf
index c41ff7cc6..c2179f2da 100644
--- a/src/config/etc/sssd.api.d/sssd-ldap.conf
+++ b/src/config/etc/sssd.api.d/sssd-ldap.conf
@@ -55,6 +55,7 @@ ldap_user_shadow_expire = str, None, false
ldap_user_shadow_flag = str, None, false
ldap_user_krb_last_pwd_change = str, None, false
ldap_user_krb_password_expiration = str, None, false
+ldap_user_authorized_service = str, None, false
ldap_pwd_attribute = str, None, false
ldap_group_search_base = str, None, false
ldap_group_search_scope = str, None, false