I would suggest asking on the postfix list.  They are pretty responsive.  However, you don't need to set up a link, you can just include another pam file in the existing pam file...the smtp pam file likely already has this.  Of course, I may be misunderstanding your question.


=G=



From: Edouard Guigné <eguigne@pasteur-cayenne.fr>
Sent: Wednesday, September 13, 2017 1:44 PM
To: sssd-users@lists.fedorahosted.org
Subject: [SSSD-users] Fwd: Re: Fwd: Re: Re: SSSD vs AD / SASL postfix cyrus
 

EXTERNAL

Dear SSSD users,

Does someone know how to configure PAM service for postfix smtp in case of using saslauthd (pam method) with SSSD ?

Can a symbolic link "/etc/pam.d/smtp" to another pam service which already uses pam_sss be enough ? as in case of cyrus saslauthd (with pam) and sssd.

Best Regards,

EG




-------- Message transféré --------
Sujet : [SSSD-users] Re: Fwd: Re: Re: SSSD vs AD / SASL postfix cyrus
Date : Wed, 13 Sep 2017 19:33:25 +0200
De : Lukas Slebodnik <lslebodn@redhat.com>
Répondre à : End-user discussions about the System Security Services Daemon <sssd-users@lists.fedorahosted.org>
Pour : Edouard Guigné <eguigne@pasteur-cayenne.fr>, sssd-users@lists.fedorahosted.org


On (13/09/17 13:11), Edouard Guigné wrote:
>Dear Lukas,
>
Please keep replies in sssd-users lists. So anybody else can
help as well.

>What about postfix if configured with saslauthd
>(/etc/postfix/sasl/smtpd.conf) ?
>pwcheck_method: saslauthd
>
I do not have any experience with postfix configuration.

>Do we need to create a "smtp" pam service /etc/pam.d/smtp ?
>
In fedora, /etc/pam.d/smtp.postfix and /etc/pam.d/smtp are already part of
postfix package.



>Best Regards,
>EG
>
>-------- Message transféré --------
>Sujet : 	Re: [SSSD-users] Re: SSSD vs AD / SASL postfix cyrus
>Date : 	Wed, 13 Sep 2017 12:00:37 -0300
>De : 	Edouard Guigné <eguigne@pasteur-cayenne.fr>
>Pour : 	Lukas Slebodnik <lslebodn@redhat.com>
>
>
>
>Hello Lukas,
>
>May you explained me how is configured /etc/pam.d/imap ?
>
>Did you copy content of a another pam file configured with sssd in
>/etc/pam.d/imap ?
>
Yes, but that is distribution specific. And it was already explained in
4th step in blog
http://linux-blog.anracom.com/2014/03/17/sasl-mit-pam-sssd-ldap-unter-opensuse-ii/

I did just a symbolic link to other pam service which already uses pam_sss.
That was enough for testing purposes with testsaslauthd

LS
_______________________________________________
sssd-users mailing list -- sssd-users@lists.fedorahosted.org
To unsubscribe send an email to sssd-users-leave@lists.fedorahosted.org