summaryrefslogtreecommitdiffstats
path: root/server/examples/config.ldif
Commit message (Collapse)AuthorAgeFilesLines
* Allow configuration of the SSSD through /etc/sssd/sssd.confStephen Gallagher2009-04-131-88/+0
| | | | | | | | | | | | | | | | | | | The SSSD now links with the ini_config and collection libraries in the common directory. The monitor will track changes to the /etc/sssd/sssd.conf file using inotify on platforms that support it, or polled every 5 seconds on platforms that do not. At startup or modification of the conf file, the monitor will purge the existing confdb and reread it completely from the conf file, to ensure that there are no lingering entries. It does this in a transaction, so there should be no race condition with the client services. A new option has been added to the startup options for the SSSD. It is now possible to specify an alternate config file with the -c <file> at the command line.
* Change the way we retrieve domainsSimo Sorce2009-04-081-0/+1
| | | | | | | | | | | | | To be able to correctly filter out duplicate names when multiple non-fully qualified domains are in use we need to be able to specify the domains order. This is now accomplished by the configuration paramets 'domains' in the config/domains entry. 'domains' is a comma separated list of domain names. This paramter allows also to have disbaled domains in the configuration without requiring to completely delete them. The domains list is now kept in a linked list of sss_domain_info objects. The first domain is also the "default" domain.
* Split modules types in Identity and AuthenticatorSimo Sorce2009-04-071-21/+29
| | | | | | | | | | | | | | The same module may implement both types, but initializatrion will be nonetheless performed separately, once for the identity module and once for the authenticator module. Also change the proxy module to retireve the pam target name from the domain configuration so that it is possibile to create per-domain pam stacks. With this modification it is actually possibile to use normal nss and pam modules to perform a successful authentication (tested only with sudo so far) Update exmples.
* added PAM default configuration to confdb_init_dbSumit Bose2009-03-061-1/+1
| | | | | | set default value of enumerate in LOCAL domain to 1 added checks to talloc_asprintf return values fixed InfoPipe defaults
* Adding InfoPipe entry to config.ldif exampleStephen Gallagher2009-02-251-0/+6
| | | | | | Also updating the .gitignore file to not ignore config.ldif Signed-off-by: Simo Sorce <ssorce@redhat.com>
* added more ldap backend options and an example configurationSumit Bose2009-02-251-0/+15
| | | | Signed-off-by: Simo Sorce <ssorce@redhat.com>
* Change examples accordingly to changes in the codeSimo Sorce2009-02-201-5/+6
|
* Regroup database rleated functions under db andSimo Sorce2009-01-121-1/+1
| | | | rename everything with the sysdb suffix.
* Use a unified base (temp. dc=sssd), for all domain including LOCAL.Simo Sorce2009-01-111-5/+5
| | | | | | | It makes no sense to have internal attribute names user configurable, remove that option and use macros internally. Also now always pass the domain name to all nss_ldb_* calls.
* Turn ldap_provider.c into proxy.c and make it possible to load just anySimo Sorce2009-01-111-0/+3
| | | | libnss library through config directives on the domain object
* Add current test ldap provider configuration example.Simo Sorce2009-01-071-0/+7
| | | | It is a bit inconsistent with the existing EXAMPLE, will fix later
* Make a binary out of each major sssd component instead ofSimo Sorce2008-11-251-2/+2
| | | | using the same binary to fork off all services.
* Update example configSimo Sorce2008-11-211-0/+2
|
* Update config example with data providerSimo Sorce2008-11-201-0/+5
|
* Store all domains served by the SSSD to a binary-tree map for fast NSS lookup.Stephen Gallagher2008-11-071-0/+18
| | | | | | Changed the "section" feature of confdb.c to use '/' as a delimiter instead of '.', because this conflicted with the ability to use dots in domain names.
* Update config.ldif exampleSimo Sorce2008-11-051-0/+6
|
* Make return the pid when new process are started.Simo Sorce2008-10-211-1/+1
| | | | | | | | Monitor each service and restart it conditionally if it fails. These monitoring is extremely simple at this moment and just uses waitpid() to check if the client is alive, there is no active probing, that will require dbus. Make nsssrv.c read the sss pipe config option for the config db.
* Add example ldifs to bootstrap the serverSimo Sorce2008-10-211-0/+16