On 3 April 2018 at 20:15, Jakub Hrozek <jhrozek@redhat.com> wrote:
> fails with the same errors as reported initially. So running manually in interactive mode works, but starting via systemctl doesn’t
One difference I can think of between running the deamon on the foreground versus running as a service is SELinux context. Did you check if maybe there are some AVC denials if you run sssd as a service?
I'll check the denials - I'm not fully up to speed on AVC denials and selinux, but some googling suggested this command
# ausearch -m avc -c sssd
<no matches>