
The current version of the RHEL 7 STIG refers to pam_ldap, which is no longer recommended as the method for authenticating to LDAP servers. This patch adds exception documentation that explains sssd to deployers and provides configuration advice. Altering these values via programmatic methods could take an entire environment offline. Implements: blueprint security-rhel7-stig Change-Id: If410d477590f8cb53f279396ba4edf63c5222b78