Ticket #1015 (new enhancement)

Opened 3 years ago

Last modified 2 years ago

RFE: Make storing period for password configurable

Reported by: myllynen Owned by: somebody
Priority: minor Milestone: SSSD Deferred
Component: SSSD Version: master
Keywords: Cc:
Blocked By: Blocking:
Tests Updated: no Coverity Bug:
Patch Submitted: no Red Hat Bugzilla: 0
Design link:
Feature Milestone:
Design review: Fedora test page:
Chosen: Candidate to push out:
Release Notes:

Description

If krb5_store_password_if_offline = true the plain text password is saved in the kernel keyring until the user connects to the home network or the system is shut down - which in the days of suspend/resume might mean days or even weeks. It should be possible to configure this storing period.

Idea from comments at https://lwn.net/Articles/457415/.

Change History

comment:1 Changed 3 years ago by dpal

  • Milestone changed from NEEDS_TRIAGE to SSSD Deferred

comment:2 Changed 2 years ago by myllynen

  • Type changed from defect to enhancement
  • Version changed from 1.6.1 to master
  • Priority changed from major to minor

Now with the more strict keyring permissions in place the need for this is not that high any more:

http://git.fedorahosted.org/git/?p=sssd.git;a=commit;h=e369fc08906383e6d5c39832f31bb6600a33f887

comment:3 Changed 2 years ago by dpal

  • Red Hat Bugzilla set to 0
Note: See TracTickets for help on using tickets.