带有 Active Directory 的 sssd 配置

带有 Active Directory 的 sssd 配置

我需要配置 sssd,以便我们可以使用 Windows Active Directory 用户名登录 Redhat 计算机。

我有以下 sssd.conf 文件的配置文件

我在日志中收到以下错误。

可能有什么问题呢。

[sssd]
config_file_version = 2
domains = CORE.MYCOMPANY.COM
services = nss, pam 
[domain/CORE.MYCOMPANY.COM]
# Uncomment if you need offline logins
cache_credentials = true
id_provider = ad
auth_provider = ad
access_provider = ad     
# Uncomment if service discovery is not working
ad_server = CORE.MYCOMPANY.COM    
# Uncomment if you want to use POSIX UIDs and GIDs set on the AD side
# ldap_id_mapping = False
# Comment out if the users have the shell and home dir set on the AD side
default_shell = /bin/bash
fallback_homedir = /home/%d/%u
# Uncomment and adjust if the default principal SHORTNAME$@REALM is not available
# ldap_sasl_authid = host/[email protected]
# Comment out if you prefer to user shortnames.
use_fully_qualified_names = True

启动服务

[cloud-user@d760770 ~]$  sudo service sssd restart
Redirecting to /bin/systemctl restart  sssd.service
Job for sssd.service failed. See 'systemctl status sssd.service' and 'journalctl -xn' for details.

错误日志

sssd_CORE.MYCOMPANY.COM.log

(Wed Mar  4 19:41:21 2015) [sssd[be[CORE.MYCOMPANY.COM]]] [be_process_init] (0x0010): fatal error initializing data providers
(Wed Mar  4 19:41:21 2015) [sssd[be[CORE.MYCOMPANY.COM]]] [main] (0x0010): Could not initialize backend [2]
(Wed Mar  4 19:41:25 2015) [sssd[be[CORE.MYCOMPANY.COM]]] [load_backend_module] (0x0010): Error (2) in module (ad) initialization (sssm_ad_id_init)!

SSD日志

(Wed Mar  4 18:45:04 2015) [sssd] [mt_svc_exit_handler] (0x0010): Process [CORE.MYCOMPANY.COM], definitely stopped!
(Wed Mar  4 19:41:25 2015) [sssd] [mt_svc_exit_handler] (0x0010): Process [CORE.MYCOMPANY.COM], definitely stopped!

相关内容