9b3f37cb0c70c7b18c49b657e3799094a8711cadJakub Hrozek In order to function correctly, a domain with
9b3f37cb0c70c7b18c49b657e3799094a8711cadJakub Hrozek <quote>id_provider=local</quote> must be created and the SSSD must
9b3f37cb0c70c7b18c49b657e3799094a8711cadJakub Hrozek The administrator might want to use the SSSD local users instead
9b3f37cb0c70c7b18c49b657e3799094a8711cadJakub Hrozek of traditional UNIX users in cases where the group nesting (see
9b3f37cb0c70c7b18c49b657e3799094a8711cadJakub Hrozek <citerefentry>
9b3f37cb0c70c7b18c49b657e3799094a8711cadJakub Hrozek </citerefentry>) is needed. The local users are also useful for
9b3f37cb0c70c7b18c49b657e3799094a8711cadJakub Hrozek testing and development of the SSSD without having to deploy
9b3f37cb0c70c7b18c49b657e3799094a8711cadJakub Hrozek a full remote server. The <command>sss_user*</command> and
9b3f37cb0c70c7b18c49b657e3799094a8711cadJakub Hrozek <command>sss_group*</command> tools use a local LDB storage to
9b3f37cb0c70c7b18c49b657e3799094a8711cadJakub Hrozek store users and groups.