--- glob_sssd: primary: domain: tealc.adm.crans.org enumerate: "true" servers: - "ldaps://{{ query('ldap','ip','tealc','adm') | ipv4 | first }}/" - "ldaps://{{ query('ldap','ip','sam','adm') | ipv4 | first }}/" - "ldaps://{{ query('ldap','ip','daniel','adm') | ipv4 | first }}/" - "ldaps://{{ query('ldap','ip','jack','adm') | ipv4 | first }}/" base: "dc=crans,dc=org" secondary: domain: re2o-ldap.adm.crans.org enumerate: "false" servers: - "ldaps://{{ query('ldap','ip','re2o-ldap','adm') | ipv4 | first }}/" - "ldaps://{{ query('ldap','ip','terenez','adm') | ipv4 | first }}/" base: "dc=crans,dc=org" bind: dn: "cn=nslcd,ou=service-users,dc=crans,dc=org" passwd: "{{ vault.ldap_nslcd_passwd }}"