Timeline


and

08/25/10:

22:51 sssd overview slides.2.pdf attached to Contribute by dpal
An oveview of the SSSD features
18:59 Ticket #608 (Race-condition in user/group enumeration) created by sgallagh
While working on Ticket #358 (netgroups support) I discovered that there's …

08/24/10:

17:27 Releases edited by sgallagh
(diff)
17:27 Releases/Notes-1.3.1 created by sgallagh
17:22 Changeset [bbb33ee] by Stephen Gallagher <sgallagh@…>
sssd-1-3Updating version to 1.3.1
17:21 Releases edited by sgallagh
(diff)
17:20 Releases/Notes-1.2.3 created by sgallagh
17:14 Changeset [410c714] by Stephen Gallagher <sgallagh@…>
sssd-1-2Updating version to 1.2.3
17:13 Releases/Notes-1.1.2 created by sgallagh
17:11 Releases edited by sgallagh
(diff)
16:57 Changeset [bb19386] by Stephen Gallagher <sgallagh@…>
1-1-0Updating version to 1.1.2
16:53 Changeset [96d31fb] by Stephen Gallagher <sgallagh@…>
1-0-0Updating to version 1.0.7 for security update
16:45 Changeset [6094a2e] by Stephen Gallagher <sgallagh@…>
1-0-0Treat a zero-length password as a failure Some LDAP servers allow binding with blank passwords. We should not allow a blank password to authenticate the SSSD.
16:44 Changeset [2448114d] by Stephen Gallagher <sgallagh@…>
1-1-0Treat a zero-length password as a failure Some LDAP servers allow binding with blank passwords. We should not allow a blank password to authenticate the SSSD.
16:44 Changeset [5ec1b97] by Stephen Gallagher <sgallagh@…>
sssd-1-2Treat a zero-length password as a failure Some LDAP servers allow binding with blank passwords. We should not allow a blank password to authenticate the SSSD.
16:44 Changeset [8262914] by Stephen Gallagher <sgallagh@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-4sssd-1-5sssd-1-6sssd-1-7sssd-1-8sssd-1-9Treat a zero-length password as a failure Some LDAP servers allow binding with blank passwords. We should not allow a blank password to authenticate the SSSD.
16:43 Changeset [266e86a] by Stephen Gallagher <sgallagh@…>
sssd-1-3Treat a zero-length password as a failure Some LDAP servers allow binding with blank passwords. We should not allow a blank password to authenticate the SSSD.
12:07 HOWTO_Configure edited by jhrozek
use ldap_search_base in the example, not ldap_user_search_base (diff)
11:58 Ticket #607 (Properly document ldap_user_search_base and ldap_group_search_base) created by sgallagh
These two options are completely useless, and are contributing to …
00:00 Milestone SSSD 1.2.3 completed

08/23/10:

19:57 Ticket #606 (Patches to make sssd more gentoo-compatible) created by maksbotan
I was working on Gentoo ebuild (like debian/ in Debian and .spec in RMP …
13:59 Ticket #605 (Patches for building sssd on some systems (i.e. Gentoo)) closed by sgallagh
fixed: Fixed by: * 126c9338cf12a3e4404c36bbe4ec14b18f23537c * …
13:58 Ticket #602 (BUILD_PYTHON_BINDINGS not used in Makefile.am) closed by sgallagh
fixed: Fixed by bf5a808fa92007c325c3996e79694badfab201d4
13:55 Changeset [257cf85] by Stephen Gallagher <sgallagh@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-4sssd-1-5sssd-1-6sssd-1-7sssd-1-8sssd-1-9Remove src/Makefile.am and src/configure.ac They are no longer used. The toplevel Makefile.am builds everything now.
13:55 Changeset [126c933] by Stephen Gallagher <sgallagh@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-4sssd-1-5sssd-1-6sssd-1-7sssd-1-8sssd-1-9Fix building sssd
13:55 Changeset [c67e60f] by Stephen Gallagher <sgallagh@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-4sssd-1-5sssd-1-6sssd-1-7sssd-1-8sssd-1-9Fix configure check for ldb
13:55 Changeset [bf5a808] by Stephen Gallagher <sgallagh@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-4sssd-1-5sssd-1-6sssd-1-7sssd-1-8sssd-1-9Don't build SSSDConfig API when configured with --without-python-bindings
13:53 Ticket #560 (provide systemd initscript) closed by sgallagh
duplicate: Dupe of Ticket #483

08/21/10:

15:53 Ticket #605 (Patches for building sssd on some systems (i.e. Gentoo)) created by maksbotan
When i tried to build sssd-1.3.0 on my Gentoo Linux computer, i got some …

08/19/10:

15:15 Changeset [ad42d90] by Stephen Gallagher <sgallagh@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-4sssd-1-5sssd-1-6sssd-1-7sssd-1-8sssd-1-9Remove common directory All files formerly in common are now being built individually out of the ding-libs repository. git clone git://git.fedorahosted.org/git/ding-libs.git
15:15 Changeset [551aa6c] by Stephen Gallagher <sgallagh@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-4sssd-1-5sssd-1-6sssd-1-7sssd-1-8sssd-1-9Rewrite toplevel Makefile There is no longer a need to have nested Makefiles and configure scripts. This patch combines the src/ Makefile and configure.ac into the root.
15:15 Changeset [b110898] by Stephen Gallagher <sgallagh@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-4sssd-1-5sssd-1-6sssd-1-7sssd-1-8sssd-1-9Build SSSD RPMs with external libraries

08/18/10:

20:53 Releases edited by sgallagh
(diff)
20:52 Releases edited by sgallagh
(diff)
20:50 Releases edited by sgallagh
(diff)
20:48 Releases edited by sgallagh
(diff)
20:45 Releases edited by sgallagh
(diff)
19:02 Ticket #604 (Don't care if authenticated with cached credentials) created by orion
I would like to be able to turn off the "Authenticated with cached …

08/12/10:

13:59 Ticket #603 (Bring the interfaces in TOOLs in compliance with the coding style) created by dpal
Coding style http://www.freeipa.org/page/Coding_Style#Function_Parameters

08/10/10:

13:36 Ticket #598 (sss client causes sig bus in pppd) closed by sgallagh
wontfix: This is a bug in glibc, not SSSD. We're behaving correctly here. …

08/06/10:

20:06 Ticket #602 (BUILD_PYTHON_BINDINGS not used in Makefile.am) created by jhrozek
This was originally mentioned by one of our users on IRC: < maksbotan> …
19:57 Ticket #601 (parameters missing from sssd-ldap(5) man page) created by jhrozek
As noticed during discussion on sssd-devel, the …
19:42 Ticket #600 (LDAP provider does not create kdcinfo files) created by jhrozek
This was originally reported into the Red Hat Bugzilla - …
13:55 Ticket #599 (SSSD log fills up the disk) created by dpal
Occasionally the sssd log get filled up consuming all available disk space …
07:32 Ticket #598 (sss client causes sig bus in pppd) created by simo
Tested with both 1.2.1 and 1.2.2 (updates-testing for F13). Simply having …

08/04/10:

18:38 Changeset [c1eb623] by Stephen Gallagher <sgallagh@…>
sssd-1-2Fix chpass operations with LDAP provider The initial verification of the old password was returning an error because we were not explicitly setting dp_err to DP_ERR_SUCCESS and it was initialized earlier in the function to DP_ERR_FATAL.
18:37 Changeset [d317aee] by Stephen Gallagher <sgallagh@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-4sssd-1-5sssd-1-6sssd-1-7sssd-1-8sssd-1-9Fix chpass operations with LDAP provider The initial verification of the old password was returning an error because we were not explicitly setting dp_err to DP_ERR_SUCCESS and it was initialized earlier in the function to DP_ERR_FATAL.

08/03/10:

23:46 Ticket #597 (sssd-ipa(5) should mention availability of HBAC IPA provider) created by obriend
Currently no information about using ipa as an access provider.
23:00 Contribute edited by sgallagh
(diff)
22:54 WikiStart edited by sgallagh
(diff)
22:53 WikiStart edited by sgallagh
(diff)
22:52 Releases edited by sgallagh
(diff)
22:51 Releases/Notes-1.3.0 created by sgallagh
22:36 Milestone SSSD 1.3.0 completed
22:33 ReleaseProcess edited by sgallagh
(diff)
22:27 Changeset [d015bbd] by Stephen Gallagher <sgallagh@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-3sssd-1-4sssd-1-5sssd-1-6sssd-1-7sssd-1-8sssd-1-9Releasing SSSD 1.3.0
22:14 Ticket #556 (Verify keytab during startup) closed by sgallagh
fixed: Fixed by 2f4e8fbdf1d4ba1e00fcab93af91fe4f4f40250d
22:14 Ticket #583 (check_time_rule() does not return proper value on failure) closed by sgallagh
fixed: Fixed by 67f0e6de26a6d46dceb4f45c0c25b01ae2f29940
22:13 Ticket #587 (unexpected status retuned as success in fail_over.c) closed by sgallagh
fixed: Fixed by 34e93359de515da5e75bb34f9f7569f1715f0aa0
22:12 Ticket #559 (sssd does not compile with --as-needed in LDFLAGS) closed by sgallagh
fixed: We believe this issue to be resolved by …
22:10 Ticket #596 (Test SSSD with OpenLDAP client that supports NSS) created by dpal
The latest version of the OpenLDAP supports NSS. We need to make sure that …
17:56 Changeset [ecace49] by Stephen Gallagher <sgallagh@…>
sssd-1-2be_pam_handler(): Fix potential NULL dereference
17:54 Changeset [0286d59] by Stephen Gallagher <sgallagh@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-3sssd-1-4sssd-1-5sssd-1-6sssd-1-7sssd-1-8sssd-1-9Add sysdb_attrs_to_list() utility function
17:54 Changeset [dbd09f5] by Stephen Gallagher <sgallagh@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-3sssd-1-4sssd-1-5sssd-1-6sssd-1-7sssd-1-8sssd-1-9Add diff_string_lists utility function Includes a unit test
17:54 Changeset [0228e28] by Stephen Gallagher <sgallagh@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-3sssd-1-4sssd-1-5sssd-1-6sssd-1-7sssd-1-8sssd-1-9Add sysdb_group_dn_name utility function
17:54 Changeset [dae0af26] by Stephen Gallagher <sgallagh@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-3sssd-1-4sssd-1-5sssd-1-6sssd-1-7sssd-1-8sssd-1-9Add dup_string_list() utility function
17:54 Changeset [d59e1d2] by Stephen Gallagher <sgallagh@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-3sssd-1-4sssd-1-5sssd-1-6sssd-1-7sssd-1-8sssd-1-9Add sysdb_update_members function This function will take a user, a list of groups that this user should be added to and a list of groups the user should be removed from and will recursively call sysdb_[add|remove]_group_member Includes a unit test
17:54 Changeset [24a5809c] by Stephen Gallagher <sgallagh@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-3sssd-1-4sssd-1-5sssd-1-6sssd-1-7sssd-1-8sssd-1-9Clean up initgroups processing for RFC2307 Instead of recursively updating all users of each group the user being queried belongs to, just add or remove membership for the requested user. Fixes https://fedorahosted.org/sssd/ticket/478
17:50 Changeset [8abeaf5f] by Stephen Gallagher <sgallagh@…>
sssd-1-2Fix incorrect NULL check
17:50 Changeset [9098393] by Stephen Gallagher <sgallagh@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-3sssd-1-4sssd-1-5sssd-1-6sssd-1-7sssd-1-8sssd-1-9be_pam_handler(): Fix potential NULL dereference
17:50 Changeset [67f0e6d] by Stephen Gallagher <sgallagh@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-3sssd-1-4sssd-1-5sssd-1-6sssd-1-7sssd-1-8sssd-1-9Fix check_time_rule() return value on failure The value returned in the 'done:' label was always EOK which is wrong as any parsing errors are not returned to the caller. Fixes: #583
17:50 Changeset [34e9335] by Stephen Gallagher <sgallagh@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-3sssd-1-4sssd-1-5sssd-1-6sssd-1-7sssd-1-8sssd-1-9Return proper error value when SRV lookup fails Fixes: #587
17:50 Changeset [8f7d6fa] by Stephen Gallagher <sgallagh@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-3sssd-1-4sssd-1-5sssd-1-6sssd-1-7sssd-1-8sssd-1-9Require -ltalloc for tevent configure check
17:50 Changeset [13d90c2] by Stephen Gallagher <sgallagh@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-3sssd-1-4sssd-1-5sssd-1-6sssd-1-7sssd-1-8sssd-1-9Fix getting default realm in the ldap child
17:50 Changeset [2f4e8fb] by Stephen Gallagher <sgallagh@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-3sssd-1-4sssd-1-5sssd-1-6sssd-1-7sssd-1-8sssd-1-9Validate keytab at startup In addition to validating the keytab everytime a TGT is requested, we also validate the keytab on back end startup to give early warning that the keytab is not usable. Fixes: #556
17:50 Changeset [caf595fa] by Stephen Gallagher <sgallagh@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-3sssd-1-4sssd-1-5sssd-1-6sssd-1-7sssd-1-8sssd-1-9Fix two problems with --as-needed

08/02/10:

18:53 WikiStart edited by sgallagh
(diff)
18:52 Releases/Notes-1.2.2 created by sgallagh
18:47 Releases edited by sgallagh
(diff)
17:59 Changeset [8fb2b98] by Stephen Gallagher <sgallagh@…>
sssd-1-2Release SSSD 1.2.2
13:16 Ticket #478 (SSSD is *much* slower than nss_ldap) closed by sgallagh
fixed: Fixed by b47a7c2697dde7a8a2ef937554ee8146491b7e57
00:00 Milestone SSSD 1.2.2 completed

07/30/10:

19:57 Changeset [d412e76] by Stephen Gallagher <sgallagh@…>
sssd-1-2Add dup_string_list() utility function
19:57 Changeset [41edee2] by Stephen Gallagher <sgallagh@…>
sssd-1-2Add sysdb_update_members function This function will take a user, a list of groups that this user should be added to and a list of groups the user should be removed from and will recursively call sysdb_[add|remove]_group_member Includes a unit test
19:57 Changeset [b47a7c2] by Stephen Gallagher <sgallagh@…>
sssd-1-2Clean up initgroups processing for RFC2307 Instead of recursively updating all users of each group the user being queried belongs to, just add or remove membership for the requested user. Fixes https://fedorahosted.org/sssd/ticket/478
19:57 Changeset [43be5d3] by Stephen Gallagher <sgallagh@…>
sssd-1-2Add sysdb_attrs_to_list() utility function
19:57 Changeset [d925dce] by Stephen Gallagher <sgallagh@…>
sssd-1-2Add diff_string_lists utility function Includes a unit test
19:57 Changeset [766e61c] by Stephen Gallagher <sgallagh@…>
sssd-1-2Add sysdb_group_dn_name utility function
14:05 Contribute edited by mnagy
(diff)
13:28 spy_hierarchy.png attached to DesignDocs/AsyncLdapConnections by mnagy
13:23 DesignDocs/AsyncLdapConnections edited by mnagy
(diff)
11:12 Ticket #571 (sssd clients do not reconnect after sssd is restarted) closed by sgallagh
fixed
11:10 Ticket #567 (IPA access backend incorrectly handles negative LDAP results) closed by sgallagh
fixed: Fixed by 3e4a95a5aa1bed0a31f55232a1bcc179f2801f4a
11:10 Ticket #565 (IPA access backend treats missing HBAC host info as system error.) closed by sgallagh
fixed: Fixed by 3e4a95a5aa1bed0a31f55232a1bcc179f2801f4a

07/29/10:

23:25 Ticket #595 (SSSD does not properly lookup groups for 2307bis) created by dpal
The SSSD is written under the assumption that any server supporting …
22:44 Ticket #594 (INI duplicate keys in the same section should produce a parsing error) created by dpal
The INI file: […] should produce an error.
22:40 Ticket #593 (INI should rise an error if the same section is a part of the INI file ...) created by dpal
The INI file […] should cause a parser error.
22:20 Ticket #592 (Fork the tools into a separate sub package and git repo) created by dpal
It is time for the tools to get into separate repo. See details here: …
16:24 DesignDocs/AsyncLdapConnections created by mnagy
15:18 Ticket #591 (Allow simplified centrally managed access control for host owners to the ...) created by dpal
The discussion is described in the following mail thread: …

07/28/10:

14:11 Ticket #590 (assorted minor bugs found by clang in SSSD) created by jhrozek
* variable ret is never checked or used after assignment in …
14:01 Ticket #589 (assorted minor bugs found by clang in the memberof module) created by jhrozek
* The variable ret is never checked or used after assignment: * …
13:54 Ticket #588 (assorted minor bugs found by clang in NSS responder) created by jhrozek
* The variable ret is never checked in nss_cmd_endgrent: * …
13:40 Ticket #587 (unexpected status retuned as success in fail_over.c) created by jhrozek
Found by clang: […] The break on line 989 should really say `goto …
13:34 Ticket #586 (assorted minor bugs found by clang in the providers code) created by jhrozek
These minor bugs were found by the clang static analyser: * the ev
13:21 Ticket #585 (minor clang bugs in sss_ tools) created by jhrozek
These were found by clang: * When processing parameters, ret is …
13:06 Ticket #584 (wrong return value from parse_absolute()) created by jhrozek
Found by clang: When parse_absolute detects an invalid interval, it …
13:00 Ticket #583 (check_time_rule() does not return proper value on failure) created by jhrozek
Found by clang: The value returned in the 'done:' label is always EOK …
12:45 Ticket #582 (Dead assignments in IPA provider) created by jhrozek
These were found by clang: * the value of ret in ipa_access.c:1854 is …
12:10 Ticket #581 (potential null dereference in data_provider_be.c) created by jhrozek
If the allocation of struct be_req fails in be_pam_handler(), we would …
11:33 Ticket #580 (printing undefined value in proxy_id.c) created by jhrozek
From clang: If the allocation of struct passwd failed, we would print …
11:29 Ticket #579 (printing undefined value in sdap_async_accounts.c) created by jhrozek
From clang: If sysdb_attrs_get_el() call fails, we would print …
11:26 Ticket #578 (potential comparison of undefined variable in krb5_auth.c) created by jhrozek
From clang: If the allocation on line 678 failed, the value of ret was …
09:48 Ticket #577 (potentially undefined return value in dp_copy_options()) created by jhrozek
In the very unlikely case dp_copy_options was called with num_options
09:40 Ticket #576 ([dhash] dead assignment in hash_get_default()) created by jhrozek
Found by clang: Although the value stored to error on line 850 is used …
09:30 Ticket #575 ([path_utils] dead storage in path_utils.c) created by jhrozek
Two cases of dead storage in path_utils.c: * in directory_list(), the …
09:12 Ticket #574 ([Collection] potential NULL dereferences) created by jhrozek
The following issues were found by running the clang static analyser …

07/26/10:

16:14 Ticket #573 (Create an interface for the web based applications to take advantage of ...) created by dpal
The interface should allow the applications to implement nice form based …
Note: See TracTimeline for information about the timeline view.