I'm trying to get sssd/ldap working on SLES 12.1, like we already have it working on SLES 11.4. The issue seems to be that 12.1 requires the use of tls. Our ldap setup has a haproxy frontend but the ldap servers on the backend have expired ssl certs. I don't have any access to the ldap setup. Is there a way to force the sssd setup to ignore the expired certs?

Thanks,
Matt