[sssd] config_file_version = 2 services = nss, pam, sudo domains = KASM.EU [nss] [pam] [sudo] [domain/KASM.EU] id_provider = ldap ldap_schema = rfc2307 ldap_uri = ldaps://id02.kasm.eu/ ldaps://id01.kasm.eu/ ldap://id02.kasm.eu/ ldap://id01.kasm.eu/ ldap_search_base = dc=kasm,dc=eu ldap_sasl_mech = GSSAPI ldap_id_use_start_tls = true ldap_tls_reqcert = try auth_provider = krb5 krb5_server = kerberos.kasm.eu krb5_backup_server = kerberos-1.kasm.eu krb5_kpasswd = kerberos.kasm.eu krb5_backup_kpasswd = kerberos-1.kasm.eu krb5_realm = KASM.EU krb5_validate = true krb5_use_fast = try krb5_auth_timeout = 20 krb5_ccname_template = KEYRING:persistent:%U # Allow offline logins by locally storing password hashes (default: false). cache_credentials = true