Configuring Identity Synchronization for Windows to support PAM LDAP involves the following:
Adding shadowAccount as an auxiliary object class for Directory Server
Adding the creation attribute default values for various shadowAccount attributes
For information about the prerequisites and how to conform to PAM LDAP on the Solaris OS, see Appendix A, Pluggable Authentication Modules.