Hallo zusammen, am Samstag, 9. Oktober 2010 schrieb Gordon Messmer: > On 10/06/2010 01:28 PM, Volker Potworowski wrote: > > I have the directive > > pam_password exop > > in /etc/ldap.conf. Hope this is enough (but doesn't work anyway). > > sss doesn't use /etc/ldap.conf. Check /etc/sssd/sssd.conf. I do not see an option in sssd.conf to enable LDAP Password Changes in sssd.conf (I already set chpass_provider = ldap). Is there another option I should enable? Here is my complete /etc/sssd.conf: [sssd] config_file_version = 2 reconnection_retries = 3 sbus_timeout = 30 services = nss, pam domains = default [nss] filter_groups = root filter_users = root reconnection_retries = 3 [pam] reconnection_retries = 3 [domain/default] auth_provider = ldap cache_credentials = True ldap_id_use_start_tls = True debug_level = 0 enumerate = True ldap_schema = rfc2307 ldap_search_base = dc=teraphim,dc=de chpass_provider = ldap id_provider = ldap min_id = 500 ldap_uri = ldap://ldap.teraphim.de ldap_tls_cacertdir = /etc/openldap/cacerts -- users mailing list users@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe or change subscription options: https://admin.fedoraproject.org/mailman/listinfo/users Guidelines: http://fedoraproject.org/wiki/Mailing_list_guidelines