[nss]
debug_level = 0
nss_filter_users_in_groups = true
nss_entry_cache_timeout = 600
nss_enum_cache_timeout = 120
[sssd]
debug_level = 0
debug_level = 0
id_provider = local
auth_provider = local
debug_level = 0
debug_level = 0
[pam]
debug_level = 0
[dp]
debug_level = 0
cache_credentials = true
# Uncomment if service discovery is not working
# ad_server = server.ad.example.com
# Uncomment if you want to use POSIX UIDs and GIDs set on the AD side
# ldap_id_mapping = False
# Comment out if the users have the shell and home dir set on the AD side
fallback_homedir = /home/%d/%u
# Uncomment and adjust if the default principal SHORTNAME$@REALM is not available
# ldap_sasl_authid = host/client.ad.example.com@AD.EXAMPLE.COM
# Comment out if you prefer to user shortnames.