As a precision of previous message, here is my sssd.conf:
[sssd] default_domain_suffix = my_domain full_name_format = %1$s domains = my_domain config_file_version = 2 services = nss, pam
[domain/my_domain] debug_level=9 default_shell = /bin/bash krb5_store_password_if_offline = True cache_credentials = True krb5_realm = MY_DOMAIN realmd_tags = manages-system joined-with-adcli id_provider = ad fallback_homedir = /home/%d/%u ad_domain = my_domain use_fully_qualified_names = True ldap_id_mapping = True access_provider = ad
After adding 'ad_gpo_access_control = permissive' at the end of file, authentication with samba4 users works again.
As a precision of previous message, here is my sssd.conf:
[sssd] domain_ suffix = my_domain
default_
full_name_format = %1$s
domains = my_domain
config_file_version = 2
services = nss, pam
[domain/my_domain] password_ if_offline = True qualified_ names = True
debug_level=9
default_shell = /bin/bash
krb5_store_
cache_credentials = True
krb5_realm = MY_DOMAIN
realmd_tags = manages-system joined-with-adcli
id_provider = ad
fallback_homedir = /home/%d/%u
ad_domain = my_domain
use_fully_
ldap_id_mapping = True
access_provider = ad
After adding 'ad_gpo_ access_ control = permissive' at the end of file, authentication with samba4 users works again.