Uploaded image for project: 'RHEL'
  1. RHEL
  2. RHEL-20440

Change in sssd 2.9.3-2 is breaking smartcard authentication

    • Icon: Bug Bug
    • Resolution: Duplicate
    • Icon: Undefined Undefined
    • None
    • CentOS Stream 8, CentOS Stream 9
    • sssd
    • None
    • None
    • rhel-sst-idm-sssd
    • ssg_idm
    • 0
    • False
    • Hide

      None

      Show
      None
    • None
    • None
    • None
    • None
    • None

      sssd.2.9.3-2 has dropped for centos9-stream and our smartcard authentication is now failing, downgrading to 2.9.2 corrected the issue.

      Changing our current sssd.conf from

      [domain/localDomain]
      id_provider = files

      to:

      [domain/localDomain]
      id_provider = files
      local_auth_policy = only

      Corrects the issue. Adding local_auth_policy to our current 2.9.1 configs in RHEL causes them to break. Assistance is necessary finding an sssd configuration that allows their smart card authentication to work and spans future and current versions of sssd.

              sssd-maint SSSD Maintainers
              rhn-support-ngarrett Neil Garrett
              SSSD Maintainers SSSD Maintainers
              SSSD QE SSSD QE
              Votes:
              0 Vote for this issue
              Watchers:
              11 Start watching this issue

                Created:
                Updated:
                Resolved: