|
69.
|
|
|
By default, SSSD will attempt to use inotify to monitor configuration files changes and will fall back to polling every five seconds if inotify cannot be used.
|
|
|
type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para>
|
|
|
|
(no translation yet)
|
|
|
|
Located in
sssd.conf.5.xml:366
|
|
70.
|
|
|
There are some limited situations where it is preferred that we should skip even trying to use inotify. In these rare cases, this option should be set to 'false'
|
|
|
type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para>
|
|
|
|
(no translation yet)
|
|
|
|
Located in
sssd.conf.5.xml:372
|
|
71.
|
|
|
Default: true on platforms where inotify is supported. False on other platforms.
|
|
|
type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para>
|
|
|
|
(no translation yet)
|
|
|
|
Located in
sssd.conf.5.xml:378
|
|
72.
|
|
|
Note: this option will have no effect on platforms where inotify is unavailable. On these platforms, polling will always be used.
|
|
|
type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para>
|
|
|
|
(no translation yet)
|
|
|
|
Located in
sssd.conf.5.xml:382
|
|
73.
|
|
|
krb5_rcache_dir (string)
|
|
|
type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term>
|
|
|
|
(no translation yet)
|
|
|
|
Located in
sssd.conf.5.xml:389
|
|
74.
|
|
|
Directory on the filesystem where SSSD should store Kerberos replay cache files.
|
|
|
type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para>
|
|
|
|
(no translation yet)
|
|
|
|
Located in
sssd.conf.5.xml:392
|
|
75.
|
|
|
This option accepts a special value __LIBKRB5_DEFAULTS__ that will instruct SSSD to let libkrb5 decide the appropriate location for the replay cache.
|
|
|
type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para>
|
|
|
|
(no translation yet)
|
|
|
|
Located in
sssd.conf.5.xml:396
|
|
76.
|
|
|
Default: Distribution-specific and specified at build-time. (__LIBKRB5_DEFAULTS__ if not configured)
|
|
|
type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para>
|
|
|
|
(no translation yet)
|
|
|
|
Located in
sssd.conf.5.xml:402
|
|
77.
|
|
|
user (string)
|
|
|
type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><term>
|
|
|
|
(no translation yet)
|
|
|
|
Located in
sssd.conf.5.xml:409
|
|
78.
|
|
|
The user to drop the privileges to where appropriate to avoid running as the root user. <phrase condition="have_systemd"> This option does not work when running socket-activated services, as the user set up to run the processes is set up during compilation time. The way to override the systemd unit files is by creating the appropriate files in /etc/systemd/system/. Keep in mind that any change in the socket user, group or permissions may result in a non-usable SSSD. The same may occur in case of changes of the user running the NSS responder. </phrase>
|
|
|
type: Content of: <reference><refentry><refsect1><refsect2><para><variablelist><varlistentry><listitem><para>
|
|
|
|
(no translation yet)
|
|
|
|
Located in
sssd.conf.5.xml:384
|