> On 20 Nov 2018, at 03:13, Olivier JUDITH <gnulux@xxxxxxxxx> wrote: > > Hi, > > It is possible . i'm using Pam PTA to authenticate AD user from SSO application. > it works perfectly. the configurationis SSO app +> 389 + SSSD -> AD > As mentionned by Mark Reynolds use PAM PTA and filter with pamFilter . As a note, remember that SSSD is single threaded and may become a performance bottleneck. You could have to consider horizontal RO replica to scale your logins. > > Contact me if you need more information. If you want to write up a how-to for our website that would be great, I’d help review it and get it commited > _______________________________________________ > 389-users mailing list -- 389-users@xxxxxxxxxxxxxxxxxxxxxxx > To unsubscribe send an email to 389-users-leave@xxxxxxxxxxxxxxxxxxxxxxx > Fedora Code of Conduct: https://getfedora.org/code-of-conduct.html > List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines > List Archives: https://lists.fedoraproject.org/archives/list/389-users@xxxxxxxxxxxxxxxxxxxxxxx — Sincerely, William _______________________________________________ 389-users mailing list -- 389-users@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe send an email to 389-users-leave@xxxxxxxxxxxxxxxxxxxxxxx Fedora Code of Conduct: https://getfedora.org/code-of-conduct.html List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/389-users@xxxxxxxxxxxxxxxxxxxxxxx