Hi Jakub,
thanks for your answer.
Jakub Hrozek wrote:
Maybe it would be beneficial to either reuse ldap_opt_timeout for the bind timeout value or introduce a new timeout. I filed https://fedorahosted.org/sssd/ticket/1501 to track this.
thanks.
I am far more concerned about the provider going offline without asking the secondary LDAP server. I'll try to reproduce the issue locally.
If I can help you with anything, just say what you need.
Cheers, Olaf