Skip to content

Commit 01b0579

Browse files
author
Anton Ustyuzhanin
committed
Add ldap_user_search_base and ldap_group_search_base variables
1 parent 842b2ad commit 01b0579

File tree

2 files changed

+10
-0
lines changed

2 files changed

+10
-0
lines changed

defaults/main.yml

Lines changed: 4 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -6,3 +6,7 @@ sssd_ldap_default_authtok: bind_password
66
sssd_ldap_user_ssh_public_key: sshPublicKey
77
# If you need to override user's primary group you can use `sssd_ldap_override_gid` variable
88
# sssd_ldap_override_gid: 500
9+
10+
# The following variables can be defined:
11+
# sssd_ldap_user_search_base:
12+
# sssd_ldap_group_search_base:

templates/sssd.conf.j2

Lines changed: 6 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -11,6 +11,12 @@ filter_users = root,ldap,named,avahi,haldaemon,dbus,radiusd,news,nscd
1111
id_provider = ldap
1212
auth_provider = ldap
1313
ldap_search_base = {{ sssd_ldap_search_base }}
14+
{% if sssd_ldap_user_search_base is defined %}
15+
ldap_user_search_base = {{ sssd_ldap_user_search_base }}
16+
{% endif %}
17+
{% if sssd_ldap_group_search_base is defined %}
18+
ldap_group_search_base = {{ sssd_ldap_group_search_base }}
19+
{% endif %}
1420
ldap_tls_reqcert = never
1521
ldap_uri = {{ sssd_ldap_uri }}
1622
enumerate = true

0 commit comments

Comments
 (0)