# vim sshaccess.ldif dn: cn=sshaccess,ou=groups,dc=<domain>,dc=<tld> objectClass: top objectClass: posixGroup gidNumber: 3000
# ldapadd -H ldaps://<FQDN> -x -W -D "<Manager DN>" -f sshaccess.ldif
# vim addusertogroup.ldif dn: cn=sshaccess,ou=groups,dc=<domain>,dc=<tld> changetype: modify add: memberuid memberuid: newuser
ldapadd -H ldaps://<FQDN> -x -W -D "<Manager DN>" -f addusertogroup.ldif
# vim /etc/ssh/sshd_config AllowGroups sshaccess
systemctl restart sshd
# vim /etc/security/access.conf + : dev : ALL - : ALL : ALL