Workaround for us was to set ad_gpo_access_control = permissive in the [domain] section of file /etc/sssd/sssd.conf ...
Regards, 2017-05-17 13:52 GMT+02:00 Timo Aaltonen <tjaal...@debian.org>: > On 03.04.2017 18:23, Thomas Sillard wrote: > > Package: sssd > > Version: 1.15.0-3 > > Severity: important > > > > Dear Maintainer, > > > > We are testing SSO with Debian 9 / sssd / realmd to authenticate users > on Active directory from Linux laptops. > > All works fine when the computer is connected to the network, but not in > offline mode. > > This seems to be a pretty basic setup and should work fine. Maybe ask on > sssd-us...@lists.fedorahosted.org about it.. > > > -- > t >