I went with SSSD instead as it allows offline auth and autofs caching.

On Sep 28, 2017 4:51 PM, "Quanah Gibson-Mount" <quanah@symas.com> wrote:
--On Thursday, September 28, 2017 5:37 PM -0400 Douglas Duckworth
<dod2014@med.cornell.edu> wrote:

> What would you recommend as a replacement for SSSD?  I am running it
> across Centos 6 and 7 clients without any issue using TLS.

There is nss-pam-ldapd/nslcd.



Quanah Gibson-Mount
Product Architect
Symas Corporation
Packaged, certified, and supported LDAP solutions powered by OpenLDAP: