Timeline


and

10/17/12:

19:24 SSSD_1.9_Overview_Oct_2012.pdf attached to Contribute by jhrozek
19:21 Ticket #1581 (sssd_be crashes while looking up users) closed by jhrozek
fixed: master: f2c39d4869da56268726f6e8fc224de8cecb7336
19:10 Contribute edited by dpal
(diff)
18:25 ReleaseProcess edited by jhrozek
(diff)
17:45 Documentation edited by jhrozek
(diff)
16:41 Ticket #1586 (Make authtoken opaque objects) created by simo
Currently the semantics of the authtoken object are opaque and it is not …
16:28 Ticket #1585 ([RFE] Add a check to pam_sss to ensure that ...) created by sbose
To allow safe usage of string related functions on authentication token …
13:51 Ticket #1584 (invalidating the memcache with sss_cache doesn't work if the sssd is not ...) created by jhrozek
Stef found this corner case while preparing for the test day. If the SSSD …
12:37 Ticket #1583 (Allow setting the default_shell per-domain) created by jhrozek
This came up as a request from stefw. It would make sense to set the …

10/16/12:

16:07 Ticket #1582 (Improve renewing the ccache with LDAP when using GSSAPI) created by jhrozek
When the SSSD is configured to use GSSAPI, then we only kinit very close …
12:08 Ticket #1327 (When multiple values are assigned, sss_debuglevel should display a usage ...) closed by jhrozek
fixed: master: 31ddfc3c183054ca17b9c9f8f03ea8151db3b5b1
12:05 Changeset [31ddfc3c] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sss_debuglevel: Multiple arguments are treated as error. https://fedorahosted.org/sssd/ticket/1327
11:26 Ticket #1476 (SSSD has a much longer TTL when updating a DNS record than IPA client ...) closed by jhrozek
fixed
11:23 Changeset [4fb12db] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14Make TTL configurable for dynamic dns updates

10/15/12:

16:00 Changeset [78fb6ec0] by Jakub Hrozek <jhrozek@…>
sssd-1-9LDAP: Check validity of naming_context https://fedorahosted.org/sssd/ticket/1581 If the namingContext attribute had no values or multiple values, then our code would dereference a NULL pointer.
15:59 Changeset [f2c39d48] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14LDAP: Check validity of naming_context https://fedorahosted.org/sssd/ticket/1581 If the namingContext attribute had no values or multiple values, then our code would dereference a NULL pointer.
15:33 Ticket #1581 (sssd_be crashes while looking up users) created by jhrozek
https://bugzilla.redhat.com/show_bug.cgi?id=866542 (Red Hat Enterprise …
15:23 Ticket #1357 (Init script reports complete before sssd is actually working) reopened by sbose
Looks like there is still an issue: […] According to the logs the nss …
14:37 Changeset [8529b5fe] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14Bump version to 1.10dev

10/12/12:

20:28 WikiStart edited by jhrozek
link to 1.9.2 release (diff)
20:27 Milestone SSSD 1.9.2 completed
20:25 Releases/Notes-1.9.2 edited by jhrozek
1.9.2 packaging changes (diff)
20:22 Releases edited by jhrozek
include the 1.9.2 release (diff)
20:18 Releases/Notes-1.9.2 created by jhrozek
1.9.2 release notes
20:17 Ticket #1319 (group lookups optimizations for IPA) closed by jhrozek
fixed: * master: d78cb9cc9dbda1594b1a8f800c4ca865706d8e75
20:16 Ticket #1539 (Collect Krb5 Trace on High Debug Levels) closed by jhrozek
fixed: * master: e7a24374d97e1d1c32d3e18561a20e8c5e6319ec
19:32 Changeset [6b73e69] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9Updating the version for the 1.9.3 release
19:18 Changeset [e5c33e0] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9Updating the translations for the 1.9.2 release
19:09 Changeset [dc739a4] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9MAN: improve wording of default_domain parameter
18:57 Ticket #1008 (Make sssd api conf file location configurable) closed by jhrozek
fixed: This was fixed in f1ce53a3b5656361557f80f61dfd42a371230c65
18:49 Changeset [c5e4d4e] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9Only call krb5_set_trace_callback on platforms that support it
18:08 Ticket #1580 (Only check for group memberships, not GIDs during initgroups (based on ...) created by jhrozek
Simo brought this up during an IRC discussion. GID change is a …
17:29 Changeset [d78cb9c] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9Create ghost users when a user DN is encountered in IPA The IPA has a defined directory tree structure that allows us to guess the username from a DN without having to look up the DN in LDAP. https://fedorahosted.org/sssd/ticket/1319
16:37 Ticket #1574 (SSH host keys are not being removed from the cache) closed by jhrozek
fixed: master: f1c34a30f5c405fa34cdf29dd52b31d5deabe197
16:23 Changeset [f1c34a3] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9SSH: When host keys are removed from LDAP, remove them from the cache as well https://fedorahosted.org/sssd/ticket/1574
15:23 Ticket #1579 ([RFE] Make sure that SSSD uses GSSAPI with GSS proxy to extract PAC) created by dpal
When GSS proxy is available SSSD should use GSSAPI with GSS proxy to fetch …
14:50 Ticket #1561 (getting user/group entry by uid/gid sometimes fails) closed by jhrozek
fixed: master: * 70eaade10feedd7845e39170d0b7eebf3a030af1 * …
14:42 Changeset [99bac83] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9Save time of last get_domains request
14:42 Changeset [1774ee9] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9Check for subdomains if getpwuid or getgrgid are the first requests Fixes https://fedorahosted.org/sssd/ticket/1561
14:42 Changeset [70eaade] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9Allow extdom exop to return flat domain name as well There are case where the extdom extended operation will return the flat or NetBIOS name of a domain instead of the DNS domain name. If this name is available for the current domain we accept it as well. Related to https://fedorahosted.org/sssd/ticket/1561
08:43 Ticket #1578 (group lookup optimisation) created by prefect
Much like #1319, I think there may be a case for trying to evaluate …
08:11 Changeset [8445e39] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9PAM: fix handling the client fd in pam destructor * Protect the fd with a mutex when closing * Set it to a safe value after closing
07:56 Changeset [115cc76] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9Two fixes to child processes There was an unused structure member in the krb5_child. Declaration of __krb5_error_msg was shadowing the same variable from sss_krb5.h which is not nice. Also we might actually use the error context directly instead of passing it as parameter.
07:56 Changeset [e7a2437] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9Collect krb5 trace on high debug levels If the debug level contains SSSDBG_TRACE_ALL, then the logs would also include tracing information from libkrb5. https://fedorahosted.org/sssd/ticket/1539
07:55 Changeset [097d741] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9Couple of specfile fixes
07:55 Changeset [fc1a05c] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9Remove libsss_sudo.pc and move libsss_sudo.so to libsss_sudo

10/11/12:

12:12 Ticket #1569 (Use pam_set_data to close the fd in the pam module) closed by jhrozek
fixed: master: dba7903ba7fc04bc331004b0453938c116be3663
12:11 Changeset [dba7903] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9PAM: close socket fd with pam_set_data https://fedorahosted.org/sssd/ticket/1569
12:08 Ticket #1577 (SSSD doesn't quit properly on EOF) created by okos
When SSSD in interactive mode receives EOF, it doesn't quit properly. …
11:46 Ticket #1571 (sssd_nss intermittent crash) closed by jhrozek
fixed: master: 8ba8222afca3026fd67af08e224b1d9e848aceaa
11:44 Changeset [8ba8222] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9Fix memory hierarchy in subdomains discovery https://fedorahosted.org/sssd/ticket/1571 The patch changes the subdomains discovery to use the tevent_req style. Previously, the code violated several rules which made the code very unreadable and led to memory hierarchy issues and use-after-free errors.
11:21 Ticket #1512 ([sssd[krb5_child[PID]]]: Credential cache directory /run/user/UID/ccdir ...) closed by jhrozek
worksforme: Neither me, nor Pavel nor the reporter can reproduce the issue anymore. …
10:38 Ticket #1551 (sssd_nss process hangs, stuck in loop; "self restart" does recover, but ...) closed by jhrozek
fixed: master: 89b93a44d1ce24ec208ee244f7e5b1689fc6ff1a
10:38 Ticket #1514 ([abrt] sssd-1.8.4-13.fc16: __GI_exit: Process /usr/libexec/sssd/sssd_pam ...) closed by jhrozek
fixed: master: 20ae5925d2963937dfc6a66017c05bb018cedd3f
10:26 Changeset [89b93a4] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9nss_cmd_retpwent(): do not go into infinite loop if n < 0 https://fedorahosted.org/sssd/ticket/1551
10:24 Changeset [20ae5925] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9do not call dp callbacks when responder is shutting down https://fedorahosted.org/sssd/ticket/1514 We were experiencing crash duting responder shut down. This happened when there were some unresolved dp request during the shut down. The memory hierarchy is main_ctx->specific_ctx->rctx, where specific_ctx may be one of the pam, nss, sudo, etc. contexts. If we try to call dp request callback as a result of responder termination, the specific context is already semi freed, which may cause crash.
10:09 Changeset [6b45f63] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9Fix language errors in the sssd-krb5.conf man page
10:03 Changeset [366b137] by Jakub Hrozek <jhrozek@…>
sssd-1-8Initialize Kerberos ticket renewal in the IPA provider Fixes https://fedorahosted.org/sssd/ticket/1526 in the 1.8 branch
10:01 Changeset [76d2d0b] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9Fixed: translation bug
08:37 Ticket #1576 (Find the cause of the infinite loop in the NSS responder) created by pbrezina
https://fedorahosted.org/sssd/ticket/1551 We fixed the symptom bug we …
08:29 Ticket #1575 (Change responder contexts hierarchy) created by pbrezina
https://lists.fedorahosted.org/pipermail/sssd-devel/2012-October/011663.htm
07:11 Ticket #1574 (SSH host keys are not being removed from the cache) created by jcholast
When host keys are removed from LDAP, they should be removed from the …

10/10/12:

20:36 Ticket #1499 (Add details about TGT validation to sssd-krb5 man page) closed by jhrozek
fixed: master: 89cc2dac478c899aaaacb75d7448e3c651723f74
20:32 Changeset [89cc2da] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9Add more info about ticket validation https://fedorahosted.org/sssd/ticket/1499 Adds log message about not finding appropriate entry in keytab and using the last keytab entry when validation is enabled. Adds more information about validation into manpage.
17:02 Ticket #1573 ([RFE] Replace winbind in the File Server case too) created by dpal
Based on the current roadmap of realmd it is important to provide …
14:57 Ticket #1572 ([RFE] Integrate local provider with user managment utilities on the system) created by dpal
This would be a pretty bold switch but here is the idea. There are couple …
13:26 Changeset [245c6b5d] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9Fix segfault when ID-mapping an entry without a SID If there was no SID attribute, then we would have detected it by checking the number of values of an element. We would however happily return EOK in that case and save garbage into the sid_str. This was causing segfault when the entry was supposed to be ID-mapped by had no SID.
13:26 Changeset [adcb680] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9do not fail if POLLHUP occurs while reading data This cause troubles when we send data to a pipe and close the file descriptor before data is read. The pipe is still readable, but POLLHUP is detected and we fail to read them. For example, this may cause a user beeing unable to log in. Now if POLLHUP appears, we read the pipe and then close it on the client side too.

10/09/12:

17:33 Changeset [ae52606] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9Fix typos
17:30 Changeset [308d531] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9Fix uninitialized pointer read in ssh_host_pubkeys_update_known_hosts

10/08/12:

16:26 Ticket #1571 (sssd_nss intermittent crash) created by jhrozek
I saw a crash on my laptop running the latest git HEAD: […]
10:42 Ticket #1361 (sssd_pam file descriptor leak /var/lib/sss/pipes/private/pam) closed by jhrozek
wontfix
10:16 Ticket #1570 (Keep track of per-PID/cgroup/process group fds in the PAM responder.) created by jhrozek
This is another idea that came out of an IRC discussion between me, Sumit …
10:06 Ticket #1569 (Use pam_set_data to close the fd in the pam module) created by jhrozek
Sumit proposed the following on the IRC: […] I think this is a great …
10:02 Ticket #1531 (Optimize "id testuser" with tokenGroups) closed by jhrozek
duplicate
08:22 FAQ edited by jhrozek
(diff)

10/07/12:

21:09 Releases edited by jhrozek
include the correct checksums (diff)
21:07 WikiStart edited by jhrozek
include the correct checksums (diff)
19:59 WikiStart edited by jhrozek
mention 1.8.5 (diff)
19:55 Releases edited by jhrozek
mention 1.8.5 (diff)
19:53 Releases/Notes-1.8.5 created by jhrozek
1.8.5 release notes
18:37 Changeset [8dc1eca] by Jakub Hrozek <jhrozek@…>
sssd-1-8Updating the version for the 1.8.6 release

10/05/12:

18:08 WikiStart edited by jhrozek
include the 1.9.1 release (diff)
18:05 Milestone SSSD 1.9.1 completed
18:04 Releases/Notes-1.9.1 created by jhrozek
1.9.1 release notes
17:44 Releases edited by jhrozek
1.9.1 release (diff)
17:40 Changeset [a87ffe4] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9Bumping the version to 1.9.1 release
17:27 Changeset [524ceec] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9Updating the translations for 1.9.1 release
17:15 Ticket #1563 (Document the need to restart autofs service.) closed by jhrozek
fixed: master: 002dfe55ef258b73ca85eb813b1a156789b7702a
17:14 Changeset [002dfe5] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9man: Note that automounter must be restarted to re-read the master map https://fedorahosted.org/sssd/ticket/1563
16:52 Ticket #1562 (Domains overlap in range 1 - 4294967295) closed by jhrozek
fixed: master: 1bf6ebedaaa7d0d0f6d7458b417b56f1f8b07472
16:51 Ticket #1540 ([man sssd-ldap] 'ldap_access_filter' description needs to be updated) closed by jhrozek
fixed: master: 09df21597db6fa5e8b954bea810b9bf7c98bafb4
16:50 Changeset [09df215] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9manpage: ldap_access_filter is not always mandatory https://fedorahosted.org/sssd/ticket/1540
16:50 Changeset [bea5638] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9do not create pid file twice If a provider is terminated and the monitor tries to restart it, it goes again through mark_service_as_started() which will try to create pid file again because number of running services didn't change. Because the pid file cannot be created twice, it will not return EOK and the whole SSSD is terminated.
16:32 Ticket #1568 ([RFE] AD Provider should use tokenGroups with non-ID-mapping) created by sgallagh
When communicating with AD providers that are using assigned POSIX IDs …
16:26 Ticket #1567 (SSSD should use UID/GID/SID/UUID for RDN attribute in the cache) created by sgallagh
Currently, much of the SSSD LDB cache is keyed on the name of the user, …
10:35 Ticket #1533 (Improve recreating new ccache file when the old one is not accessible any ...) closed by okos
fixed
08:51 Changeset [3882325f] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9SSH: Expire hosts in known_hosts
08:51 Changeset [2d6836a] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9SSH: Refactor sysdb and related code
08:34 Ticket #1566 (drop the libldb version requirement) created by jhrozek
Currently the specfile has hardcoded libldb version requirement and also …

10/04/12:

18:24 Ticket #1537 (Fix sssd-ad id ranges) closed by jhrozek
fixed: master: 67ca9e7c006d8619f446c018eabf29eab1368ba5
17:43 Changeset [8fe57452] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9Log possibly non-randomizable ccache file template fixes https://fedorahosted.org/sssd/ticket/1533 ccache file template is now checked for appended XXXXXX for use with mkstemp. When those characters are not present, warning is written to log.
17:43 Changeset [88a7086] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9Slices calculation is alway wrong for default values
17:43 Changeset [67ca9e7] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9Fix default upper limit of slices https://fedorahosted.org/sssd/ticket/1537 changes upper limit of slices to 2000200000 in providers code and manpage.
12:24 Ticket #1565 (SSSD stops working due to memory problems) closed by jhrozek
fixed: master: cdf4599ba44a6b17818cb5e77f3a727491b7e85e
12:20 Ticket #1565 (SSSD stops working due to memory problems) created by jhrozek
https://bugzilla.redhat.com/show_bug.cgi?id=820908 (Red Hat Enterprise …
12:15 Ticket #1564 (pam_sss(crond:account): Request to sssd failed. Timer expired) created by jhrozek
https://bugzilla.redhat.com/show_bug.cgi?id=858345 (Red Hat Enterprise …
10:38 Ticket #1554 (sss_seed should not allow blank passwords) closed by mzidek
fixed: fixed in master 2be3f0fb6f38042386975111a1e86e7b5850ac85
09:18 Changeset [e7dd2a5] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9Check for existing pidfile before starting the providers After we switched to writing pidfile after the responders started, we forgot that starting a second SSSD instance would first overwrite the pipes and sockets and only then the SSSD would find out there already is a pidfile. This patch checks for existing pidfile before proceeding with startup.
09:01 Changeset [e6e0d5a] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9Remove unused variable
08:59 Changeset [1bf6ebe] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9Change the log level of two DEBUG messages in check_domain_ranges https://fedorahosted.org/sssd/ticket/1562
06:44 Ticket #1563 (Document the need to restart autofs service.) created by kaushikub
After making changes to sssd.conf, for the new autofs settings to take …
04:24 Ticket #1562 (Domains overlap in range 1 - 4294967295) created by jhrozek
https://bugzilla.redhat.com/show_bug.cgi?id=861132 (Fedora) […]

10/03/12:

18:40 Ticket #1471 (Range Retrieval: Unable to retrieve all members when filter is used in ...) closed by jhrozek
fixed: master: c3869cac3143e3084e95521d76fe7345b3c8d00f
18:39 Changeset [c3869ca] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9Note that Range Retrieval is not supported when filter is used in the search base. https://fedorahosted.org/sssd/ticket/1471
18:38 Changeset [872bd66] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9Variable in sdap_sudo_rules_refresh_send could be used, uninitialized.
18:36 Ticket #1553 (Improve error message of sss_seed when the domain does not exist) closed by jhrozek
fixed: master: 495571b649deec07e80a5b21e7081351dc623e7b
18:32 Changeset [495571b] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9sss_seed: Improved error message when the domain does not exist. https://fedorahosted.org/sssd/ticket/1553
18:29 Ticket #1548 (User authentication fails when password is read from a file using -p ...) closed by jhrozek
fixed: master: 2be3f0fb6f38042386975111a1e86e7b5850ac85
18:29 Ticket #1549 (Providing invalid UID/GID values, terminates sss_seed tool without any ...) closed by jhrozek
fixed: master: 799f04e2ccd434ea51e5c7f59c5d83210c220c90
18:25 Changeset [a004873f] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9sss_seed: Option --debug did not work in sss_seed tool. debug_level was set before the parameters were parsed, so the default debug_level value was always used. Also CHECK_ROOT macro was used on bad place, so only root was able to run sss_seed --help/-?.
18:25 Changeset [799f04e] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9sss_seed: Show error message when interactive input fails. https://fedorahosted.org/sssd/ticket/1549
18:25 Changeset [2be3f0fb] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9sss_seed: Make only first line of password file valid. When file is used to specify a password in sss_seed, then only first line of this file is used. Also empty passwords are treated as errors. https://fedorahosted.org/sssd/ticket/1548
18:25 Changeset [f0f2ac9] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9sss_seed: Passwords longer then PASS_MAX not allowed. sss_seed fails if password file specified with -p or --password-file option contains password longer than PASS_MAX. Man pages inform about PASS_MAX limitation.
18:16 Ticket #1561 (getting user/group entry by uid/gid sometimes fails) created by simo
This is with 1.9.0 bits as released in the ipa-devel repo. During the AD …
13:16 Ticket #1560 (Enable OpenSSH-LPK support by default) created by jcholast
OpenSSH formatted public keys are now supported in SSSD. This means that …
12:22 Ticket #1553 (Improve error message of sss_seed when the domain does not exist) reopened by jhrozek
Please don't close until pushed.
11:44 Changeset [052684f] by Jakub Hrozek <jhrozek@…>
sssd-1-8FO: Check server validity before setting status The list of resolved servers is allocated on the back end context and kept in the fo_service structure. However, a single request often resolves a server and keeps a pointer until the end of a request and only then gives feedback about the server based on the request result. This presents a big race condition in case the SRV resolution is used. When there are requests coming in in parallel, it is possible that an incoming request will invalidate a server until another request that holds a pointer to the original server is able to give a feedback. This patch simply checks if a server is in the list of servers maintained by a service before reading its status. https://fedorahosted.org/sssd/ticket/1364
11:40 Ticket #1553 (Improve error message of sss_seed when the domain does not exist) closed by mzidek
fixed

10/02/12:

15:18 Ticket #1535 (Flip the default value of ldap_initgroups_use_matching_rule_in_chain) closed by jhrozek
fixed: master: ae5381b3a81ed4dee51e3ac56ddabd0bf7641c86
15:17 Ticket #1559 ([RFE] Use the getpwnam()/getgrnam() interface as a gateway to resolve SID ...) created by simo
It would be useful if we culd expose SID->Name resolution as a special …
15:17 Changeset [ae5381b] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9Flip the default value of ldap_initgroups_use_matching_rule_in_chain https://fedorahosted.org/sssd/ticket/1535
15:17 Changeset [813086b] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9Include param_help_py.xml in the list of po4a sources
15:14 Ticket #1525 (Explain default re_expression in IPA and AD provider man pages) closed by jhrozek
fixed: master: 767caa58f91bf87586c872b67896297ff4073241
15:13 Changeset [767caa5] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9Add man page section about provider specific re_expression Fixes: https://fedorahosted.org/sssd/ticket/1525
15:13 Ticket #1558 ([RFE] Use MS-PAC to retrieve user's group list) created by simo
We currently use the tokenGroups control against one Ad domain server to …
15:09 Ticket #1557 ([RFE] Use the Global Catalog in SSSD for the AD provider) created by simo
We should use the Global Catalog to do SID -> Name resolution and also SID …
14:55 Ticket #1303 (SSSD is slow at startup) closed by jhrozek
fixed: master: 798a227df11f49147fa43e515910ec11e21e0caa
14:54 Changeset [798a227d] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9remove left over principal selection https://fedorahosted.org/sssd/ticket/1303 Domain start up was taking too long when there are many principals in a kerberos keytab. We were looking up in the keytab two times. The first time we try to select a proper principal and remember it. The second call happens almost right after the first one and it is just a check if the principal exists in the keytab, without any output information other than success/failure. It is probably a left over from https://fedorahosted.org/sssd/ticket/781. This patch removes the second call.
14:53 Ticket #1556 (check the principal using select_principal_from_keytab in LDAP provider ...) created by jhrozek
We try to find the matching principal in the AD and IPA providers using …
14:25 Ticket #1357 (Init script reports complete before sssd is actually working) closed by jhrozek
fixed: master: * fa893b2796b002f709e9416f134bc8df8c08cf8d * …
14:10 Changeset [fa893b2] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9monitor: create pid file after all responders are started https://fedorahosted.org/sssd/ticket/1357
14:07 Changeset [f3c6d7d] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9Fix few coding style issues

10/01/12:

20:17 Ticket #1541 (Manpage has ldap_autofs_search_base as experimental feature) closed by jhrozek
fixed: master: 7cbcb70af10c251b75958f05b2635cf2d702ba53
20:11 Changeset [7cbcb70] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9sudo and autofs search bases should not be marked experimental https://fedorahosted.org/sssd/ticket/1541
20:06 Ticket #1546 (sss_seed "-h" and "--help" options should output similar results) closed by jhrozek
fixed: master: a20fff2d9a99e75b475b12bf212de4d608c166bd
20:05 Changeset [a20fff2] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9Change option to display help message in man pages. POPT_AUTOHELP generates -? and --help options and not -h to display help message. https://fedorahosted.org/sssd/ticket/1546
19:51 Ticket #1494 (ldap_chpass_update_last_change is not included in the manual page) closed by jhrozek
fixed: master: e9cbbaf5b12a2d7aad69337d9d396449068a7786
19:50 Changeset [e9cbbaf] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9Document ldap_chpass_update_last_change Add the option to the manual page and the configAPI https://fedorahosted.org/sssd/ticket/1494
19:48 Ticket #1529 ([RFE] Login with users from a trusted domain always requires a FQ name) closed by jhrozek
fixed: Fixed in: * 1542b85f13d72329685bdd97aa879c36d11f81be * …
19:45 Changeset [aac3ca6] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9Use flat name for master domain as well
19:45 Changeset [fc0e15e] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9sysdb_master_domain_get_info: fix copy-and-paste error
19:45 Changeset [1542b85] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9Add new option default_domain_suffix
19:40 Changeset [00516601] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9BUILD: Include the patch file in the tarball
18:50 Ticket #1546 (sss_seed "-h" and "--help" options should output similar results) reopened by jhrozek
16:31 Ticket #1546 (sss_seed "-h" and "--help" options should output similar results) closed by mzidek
fixed
13:55 Ticket #1555 (validate the shell coming from the directory or the cache) created by jhrozek
It is possible to put junk into the shell attribute of an user entry. We …
11:13 Ticket #1554 (sss_seed should not allow blank passwords) created by jhrozek
This was found by Amith during his testing. Currently, the SSSD allows …
09:05 Ticket #1553 (Improve error message of sss_seed when the domain does not exist) created by jhrozek
When an invalid domain name is specified with sss_seed, then the error …

09/27/12:

19:14 Ticket #1552 (responders won't start if a provider failed to start) created by pbrezina
The monitor tries to start up the providers first and then starts up the …
16:27 Ticket #1551 (sssd_nss process hangs, stuck in loop; "self restart" does recover, but ...) created by jhrozek
https://bugzilla.redhat.com/show_bug.cgi?id=814513 (Red Hat Enterprise …
11:22 Ticket #1508 (sssd does not update IPA changes to hosts in hostgroups for sudorules) closed by jhrozek
invalid: This turned out to be a configuration issue.
09:01 Ticket #1550 (Validate the SELinux user context with security_canonicalize_context()) created by jhrozek
Because we have no control over what SELinux context comes from the …
04:01 Ticket #1549 (Providing invalid UID/GID values, terminates sss_seed tool without any ...) created by apeetham
SSS_SEED tool has an interactive (-i) mode to provide user information. …
03:47 Ticket #1548 (User authentication fails when password is read from a file using -p ...) created by apeetham
When -p or --password-file option for sss_seed tool is used to read user …
03:30 Ticket #1547 (Authentication fails for non-existent domain users cached by SSS_SEED tool) created by apeetham
SSS_SEED tool allows a user who is non-existent in the domain to be …
03:00 Ticket #1546 (sss_seed "-h" and "--help" options should output similar results) created by apeetham
The man page for sss_seed tool shows "-h" and "--help" as valid options …

09/26/12:

21:19 Ticket #1545 ([RFE] Introduce a new option to parametrize how krb5 principals are ...) created by jhrozek
Users sometimes run into the situation where the user principal attribute …
20:41 Ticket #1483 (Mention ldap_schema types on newlines or comma separate them.) closed by jhrozek
fixed: master: 1ea72a4859443b78bb07e3a45b3a8903ad3deb79
20:39 Changeset [1ea72a4] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9sssd-ldap manpage: ldap_scheme formatting fixes https://fedorahosted.org/sssd/ticket/1483 ldap schemes now displayed as bullet list
20:38 Ticket #1542 (User authentication using LDAP doesn't work) closed by jhrozek
fixed: master: 3f5953b0cd6ad826141c62dd239efc675b351689
20:34 Changeset [3f5953b] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9LDAP: Handle empty namingContexts values safely Certain LDAP servers can return an empty string as the value of namingContexts. We need to treat these as NULL so that we can fail gracefully. https://fedorahosted.org/sssd/ticket/1542
20:33 Ticket #1544 (Provide a patch to for SSSD to leverage new INI API) created by dpal
With the release of the new version of the INI API SSSD needs to be …
20:30 Ticket #1543 (Complete merge logic) created by dpal
Current implementation of the merge logic is incomplete.
20:29 Ticket #1542 (User authentication using LDAP doesn't work) created by jhrozek
https://bugzilla.redhat.com/show_bug.cgi?id=854619 (Red Hat Enterprise …
20:19 Ticket #747 (Change paths in INI unit tests) closed by dpal
wontfix: The paths in the UT for the new interface relay on $srcdir. Old interface …
20:14 Ticket #738 (Uninitialized variables in the collection UNIT test) closed by dpal
fixed: Issues is addressed in the current tree.
20:11 Ticket #448 (Review API documentation) closed by dpal
wontfix: Each interface needs to be reviewed separately.
19:56 Ticket #741 (Dead code in the ini value serialization) closed by dpal
fixed: This code is already re-factored in the current tree and does not have the …
19:50 Ticket #739 (Uninitilized variables in the file context structure) closed by dpal
fixed: Based on the code inspection of the function ini_config_file_open() the …
19:36 Ticket #572 (COLLECTION Add capability to delete the collection providing a callback) closed by dpal
fixed: It is in tree. Can't find a commit but it was done at least a year ago. …
19:23 Ticket #1541 (Manpage has ldap_autofs_search_base as experimental feature) created by kaushikub
autofs map was tech preview for rhel6.3/sssd-1.8. But it is fully …
13:26 Ticket #1540 ([man sssd-ldap] 'ldap_access_filter' description needs to be updated) created by jhrozek
https://bugzilla.redhat.com/show_bug.cgi?id=860667 (Red Hat Enterprise …
12:10 Ticket #1539 (Collect Krb5 Trace on High Debug Levels) created by myllynen
There's been a case or two in the past where only the Krb5 trace revealed …

09/25/12:

12:30 Ticket #1538 (Create a unit test for the principal selection) created by jhrozek
We could write a unit test that would create a keytab with different …
11:50 Ticket #1537 (Fix sssd-ad id ranges) created by myllynen
Currently sssd-ad has slices of 200,000 users starting at ID 200,000 and …
11:42 Releases/Notes-1.9.0 edited by jhrozek
(diff)
11:36 Releases/Notes-1.9.0 edited by jhrozek
(diff)
03:03 Ticket #1536 ([RFE] Add INI_GET_LAST_VALUE option to ini_get_config_valueobj()) created by dpal
Currently ini_get_config_valueobj() function can get first value or next …

09/24/12:

21:36 WikiStart edited by jhrozek
link to 1.9.0 release (diff)
21:32 ReleaseProcess edited by jhrozek
(diff)
21:26 Releases edited by jhrozek
link to 1.9.0 release (diff)
21:21 Milestone SSSD 1.9.0 completed
21:18 Releases/Notes-1.9.0 created by jhrozek
1.9.0 release notes
20:37 Changeset [682702a] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9Bumping the version to 1.9.1 release
20:24 Changeset [ea929f1b] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9Updating translations for the 1.9.0 release
20:22 Changeset [dfc89d5] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9Set the version number to 1.9.0 for the release
20:04 Changeset [0725a53] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9RPM: Create ghost files during install
16:50 Ticket #1317 (Detect LDAPDerefRes in configure script) closed by jhrozek
fixed: master: 3767159dee1fac3127023777f178a74cc3daffd0
16:49 Changeset [3767159d] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9Detect LDAPDerefRes in configure script https://fedorahosted.org/sssd/ticket/1317
16:46 Ticket #1535 (Flip the default value of ldap_initgroups_use_matching_rule_in_chain) created by jhrozek
The matching rule can actually be slower than not using it. It is also …
16:31 Ticket #1384 (SSSD should move away unaccessible ccache files) closed by jhrozek
fixed: master: 5feb9beb0586ac97a85acec31c19acfff314fdbd
16:30 Changeset [5feb9beb] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9KRB5: Recover gracefully if the ccache file could not be reused https://fedorahosted.org/sssd/ticket/1384
16:28 Ticket #920 (Bad debug message when adding services without explicit ...) closed by jhrozek
fixed: master: 46d2643b60231ce8634c4683107649c07d3226a9
16:26 Changeset [46d2643b] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9Bad debug message when no dns_discovery_domain specified. https://fedorahosted.org/sssd/ticket/920
16:23 Changeset [95f5e79] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9SYSDB: Remove unnecessary domain parameter from several sysdb calls The domain can be read from the sysdb object. Removing the domain string makes the API more self-contained.
16:23 Changeset [edd6630] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9DB: Use TALLOC_CTX for talloc context A couple of sysdb functions used "void *" in place of a TALLOC_CTX.
16:22 Ticket #1506 (autofs entries with the same key collide) closed by jhrozek
fixed
16:18 Changeset [507521d] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9AUTOFS: Do not fail if search base is not provided
16:18 Changeset [c7efe25] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9AUTOFS: Add sysdb tests
16:18 Changeset [f17d26a] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9AUTOFS: Add entry objects below map objects https://fedorahosted.org/sssd/ticket/1506 Changes how the new autofs entry objects are handled. Instead of creating the entry on the cn=autofs,cn=custom level, the entry is created below the map it belongs to.
16:18 Changeset [e75a152] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9AUTOFS: Use both key and value in entry RDN This patch switches from using just key in the RDN to using both key and value. That is neccessary to allow multiple direct mounts in a single map.
16:18 Changeset [77f445d] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9AUTOFS: convert the existing autofs entries during a sysdb upgrade
16:15 Changeset [7ac513a0] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9AD: Handle sysdb lookup failure during tokenGroups processing
16:00 Ticket #1517 (subdomain discovery is too noisy) closed by jhrozek
fixed: fixed in c3f27432d012dd72f0282bc2c0962264bafacabd
15:58 Changeset [c3f2743] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9Make subdomain discovery less noisy Fixes https://fedorahosted.org/sssd/ticket/1517
15:03 Ticket #1534 ([RFE] Integrate SSSD with CIFS client) created by dpal
Here is a mail thread on the subject: Do you know, can sssd 1.5 be used …
13:53 Ticket #1533 (Improve recreating new ccache file when the old one is not accessible any ...) created by jhrozek
When the SSSD tries to reuse a ccache file that is not owned or readable …
13:11 Changeset [b2f9e5b] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9autofs, sudo, ssh and PAC are not experimental anymore
13:03 Changeset [326f4fc] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9sdap_add_incomplete_groups(): fix ret may be uninitialized warning
13:02 Ticket #1355 (ldap_schema = ad performance issue) closed by jhrozek
fixed: master: * e6ba224432bfcd64802222a3544bc38c179727cd * …
13:00 Changeset [e6ba224] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9AD: Detect domain controller compatibility version
13:00 Changeset [d0e0e73e] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9AD: Optimize initgroups lookups with tokenGroups https://fedorahosted.org/sssd/ticket/1355
11:32 Ticket #1311 (sss_cache does not remove entries from the fastcache) closed by jhrozek
fixed: master: * 7c2e91ac48b20e6699d5c98c9912ea6427453c95 * …
11:09 Changeset [7c2e91a] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9tools_util.h provides signal_sssd function.
11:09 Changeset [99c99e55] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9sss_cache tool invalidates records in memory cache.
11:07 Ticket #1487 (yum remove sssd does not remove files in var/lib/sss/mc/) closed by jhrozek
fixed: master: 1241d9f9daa17ef245c39f69dad4fd100367d299
11:07 Ticket #1530 (ldap_idmap_autorid_compat not working with tokenGroups) closed by jhrozek
fixed: master: 5dedd73d90f0c1f23299f0c613f384ef902c3653
11:05 Changeset [5dedd73] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9AD: autorid compatibility should recommend the use of default domain Previously, we were failing to start if ldap_idmap_autorid_compat was True but the default domain SID was unspecified. This is the recommended configuration, but it is functional without it. There is just a slight risk that the IDs will be inconsistent between machines if the first user requested is not from the default domain. https://fedorahosted.org/sssd/ticket/1530
11:05 Changeset [1241d9f] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9Mark the fastcache files in the spec file as %ghost https://fedorahosted.org/sssd/ticket/1487

09/21/12:

17:51 Ticket #1532 (Change sprintf to snprintf in ding-libs) created by dpal
There are multiple places in the unit tests where sprintf is used. It is …
12:59 Ticket #1531 (Optimize "id testuser" with tokenGroups) created by myllynen
As discussed on IRC it should be investigated would it be possible to …
12:54 Ticket #1530 (ldap_idmap_autorid_compat not working with tokenGroups) created by myllynen
With the following configuration the AD provider works as expected e.g. …
08:59 Changeset [b196e1e] by Jakub Hrozek <jhrozek@…>
sssd-1-8KRB5: Return PAM_AUTH_ERR on incorrect password https://fedorahosted.org/sssd/ticket/1515

09/20/12:

19:50 Ticket #1529 ([RFE] Login with users from a trusted domain always requires a FQ name) created by dpal
Assume the setup when there is an AD as authoritative source of the …
18:30 Ticket #1440 (SSSD fails to store users if any of the requested attribute is empty.) closed by jhrozek
fixed: master: bb918975adc4dc26d22578f174027c0d7a1e3ed9
17:48 Changeset [bb91897] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9SSSD fails to store users if any of the requested attribute is empty. https://fedorahosted.org/sssd/ticket/1440
17:26 Ticket #1225 (RFE: Add more debug information into the krb5_child and ldap_child ...) closed by jhrozek
fixed: master: e757112ae9b606e7ba158c07bd4422aea671f800
17:25 Changeset [c75bde9] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9Add more debuginfo into ldap_child https://fedorahosted.org/sssd/ticket/1225 krb5_child already updated before. Adding more debuginfo into ldap_child. Also old debug levels rewritten into new macros.
16:07 Ticket #1524 (Add provider specific default regular expressions for parsing user names) closed by jhrozek
fixed: master: 3dbd8884d37bfc1db4be973737c44135a5fa3910
16:06 Changeset [3dbd888] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9Add provider specific default regular expressions Fixes https://fedorahosted.org/sssd/ticket/1524
15:55 Changeset [6ea1223] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9DB: Cancel transaction in sysdb_store_user if sysdb_add_user fails
13:32 Ticket #1526 (SSSD does not auto renew kerberos credentials when auth_provider is 'ipa') closed by dpal
fixed
12:50 Ticket #1120 (Cleanup of the provider code - SYSDB_* constants) closed by dpal
wontfix: There is no real value to do this change. Thus closing.
08:24 Ticket #1371 (Missing resolv.conf should be non-fatal) closed by jhrozek
fixed: master: b4262f1ac9c76d51e2c61ee3ce81e7d84fc1b9c6
08:23 Ticket #1310 (System error when trying to sudo) closed by jhrozek
fixed
08:17 Changeset [bd5790f] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9SSH: Fix possible infinite loop when updating known_hosts
08:15 Changeset [b4262f1] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9Missing resolv.conf should be non-fatal https://fedorahosted.org/sssd/ticket/1371
08:13 Changeset [adb08b2] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9LDB_ERR_INVALID_ATTRIBUTE_SYNTAX added to sysdb_error_to_errno.
08:11 Changeset [6c722d1] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9KRB5 child: handle more error codes gracefully This patch changes handling of krb5 child error codes so that it's on par with the 1.8 branch after Joschi Brauchle reviewed the 1.8 backport.
08:07 Changeset [383fa7e] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9KRB5 child: Don't return System Error on empty password https://fedorahosted.org/sssd/ticket/1310

09/19/12:

20:15 Ticket #1528 (SSSD_NSS failure to gracefully restart after sbus failure) created by jraquino
I have a reoccurring problem where sssd seems to get tripped up and is …
06:54 Ticket #1428 (SELinux login file is not recreated during offline login) closed by jhrozek
worksforme: Yes, I retested this as well and the login file is recreated based on …
06:13 Ticket #1423 (Examine all uses of ldap_set_option() for endianness issues) closed by jhrozek
worksforme: I agree, I checked the calls as well and all conform to the description in …

09/17/12:

17:23 Ticket #1527 ([RFE] Access to cache credentials is lost on daemon restart) created by simo
We store cached credentials in the kernel keyring, but we create a new …
16:35 Ticket #1521 (Missing Primary Server doesn't default to service lookup) closed by jhrozek
fixed: master: b1caacb098ae99ad65144120fdec4d0fd98ad9d5
16:35 Ticket #1394 (sssd_krb5_locator_plugin man pages found in sssd rpm.) closed by jhrozek
fixed: master: 3a8f68b9b7ae094a4186d2d9abeb2ec0209902fd
13:13 Changeset [3a8f68b9] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9rpm: put localized sssd_krb5_locator_plugin manpages into client Localized sssd_krb5_locator_plugin manpages were added into main sssd package instead of client. https://fedorahosted.org/sssd/ticket/1394
13:03 Changeset [b1caacb] by Jakub Hrozek <jhrozek@…>
mastersssd-1-10sssd-1-11sssd-1-12sssd-1-13sssd-1-14sssd-1-9Failover: use _srv_ when no primary server is defined https://fedorahosted.org/sssd/ticket/1521
Note: See TracTimeline for information about the timeline view.