Skip to content

Commit 26c50d8

Browse files
committed
Fix sssd.conf ldap_search_base for LDAP integration domain
LDAP integration domain reders a wrong sssd.conf file, this commit fixes the ldap_search_base and sets ldap_default_authtok to Password. Fixes: #31 Signed-off-by: Francisco Trivino <[email protected]>
1 parent 279f7d1 commit 26c50d8

File tree

1 file changed

+2
-1
lines changed

1 file changed

+2
-1
lines changed

src/ipa-tuura/domains/utils.py

Lines changed: 2 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -337,7 +337,7 @@ def config_default_sssd(domain):
337337
domain_section = "%s/%s" % ("domain", domainname)
338338
sssdconfig.add_section(domain_section)
339339
sssdconfig.set(
340-
domain_section, "ldap_search_base", "dn=" + suffix[0] + ", dn=" + suffix[1]
340+
domain_section, "ldap_search_base", "dc=" + suffix[0] + ", dc=" + suffix[1]
341341
)
342342
sssdconfig.set(domain_section, "debug_level", "9")
343343
sssdconfig.set(domain_section, "id_provider", id_provider)
@@ -346,6 +346,7 @@ def config_default_sssd(domain):
346346
sssdconfig.set(domain_section, "ldap_uri", ldap_uri)
347347
sssdconfig.set(domain_section, "ldap_user_extra_attrs", ldap_user_extra_attrs)
348348
sssdconfig.set(domain_section, "ldap_default_bind_dn", domain["client_id"])
349+
sssdconfig.set(domain_section, "ldap_default_authtok", domain["client_secret"])
349350
sssdconfig.set(domain_section, "use_fully_qualified_names", "True")
350351
sssdconfig.set(domain_section, "cache_credentials", "True")
351352
sssdconfig.set(domain_section, "enumerate", "True")

0 commit comments

Comments
 (0)