pagure Logo
  • Log In

SSSD / sssd

Clone
Source Code
GIT
Documentation
GIT

Learn more about these different git repos.

Other Git URLs

  • Source
  • Docs
  • Issues  0
  • Pull Requests  0
  • Roadmap 
  • Stats
 Overview  Files  Commits  Branches  Forks  Releases

Commits 8741

Branch: sssd-1-16
1-0-0 1-1-0 maint-0.6 maint-0.7 master sssd-1-10 sssd-1-11 sssd-1-12 sssd-1-13 sssd-1-14 sssd-1-16 sssd-1-2 sssd-1-3 sssd-1-4 sssd-1-5 sssd-1-6 sssd-1-7 sssd-1-8 sssd-1-9
This branch contains 288 commits not in the main branch master
krb5: do not cache ccache or password during preauth
Sumit Bose • 4 years ago  
895aa34
ipa_auth and krb5_auth: when providing wrong password return PAM_AUTH_ERR
ikerexxe • 5 years ago  
b118557
SPEC: 'sssd.api.*' should belong `python-sssdconfig`
Alexey Tikhonov • 5 years ago  
0ecc498
SPEC: added explicit `samba-client-libs` dependency
Alexey Tikhonov • 5 years ago  
d742192
DOMAIN: Downgrade log message type
Paweł Poławski • 5 years ago  
5774526
sysdb: check if the id override belongs to requested domain
Pavel Březina • 5 years ago  
a63e00f
krb5_child: fix permissions during SC auth
Sumit Bose • 5 years ago  
a61b80d
SYSDB: Cache selector as enum
Paweł Poławski • 5 years ago  
d93b4fe
LDAP: Netgroups refresh in background task
Paweł Poławski • 5 years ago  
838db43
providers/proxy: fixed erroneous free of orig_grp
Alexey Tikhonov • 5 years ago  
e61f361
providers/proxy: got rid of excessive mem copies
Alexey Tikhonov • 5 years ago  
f6d20a5
providers/proxy: fixed usage of wrong mem ctx
Alexey Tikhonov • 5 years ago  
34412b2
providers/proxy: fixed wrong check
Alexey Tikhonov • 5 years ago  
80bfea5
providers/proxy: small optimization
Alexey Tikhonov • 5 years ago  
66b979b
CI: Drop usage of unnecessary copr repo for mock
Lukas Slebodnik • 5 years ago  
b76d220
mem-cache: sizes of free and data tables were made consistent
Alexey Tikhonov • 5 years ago  
38d4eab
SYSDB: override_gid not working for subdomains
Tomas Halman • 5 years ago  
91475e5
config: add dns_resolver_op_timeout to option list
Pavel Březina • 5 years ago  
7cb6a9f
sysdb: sanitize certmap rule name before using it in DN
Sumit Bose • 5 years ago  
f68b4da
ipa: add missing new-line in debug message
Sumit Bose • 5 years ago  
e4f3cf6
sssd.spec.in: added missing Requires
Alexey Tikhonov • 5 years ago  
ed76858
Watchdog: fixes "off-by-one" error
Alexey Tikhonov • 5 years ago  
b46e2d4
Updating the version for 1.16.6
Michal Židek • 5 years ago  
5ea484b
translation: Add missing new lines
Michal Židek • 5 years ago  
c2053e9
Updated translation files.
Michal Židek • 5 years ago  
a4974d1
SBUS: fixed off-by-one error" in sbus_auto_reconnect()
Alexey Tikhonov • 5 years ago  
a1bdab3
sdap: provide error message when password change fail in ldap_modify mode
Pavel Březina • 5 years ago  
ddf0a59
failover: make sure we switch to another server if only port differs
Pavel Březina • 5 years ago  
4b1d1a0
TESTS: added sss_ptr_hash unit test
Alexey Tikhonov • 5 years ago  
c0d6419
sss_ptr_hash: pass new hash_entry_t to custom delete callback
Pavel Březina • 5 years ago  
7f46c85
ci: remove old dependency repository
Pavel Březina • 5 years ago  
1066130
ci: keep system list outside repository
Pavel Březina • 5 years ago  
78cf8b1
memberof: keep memberOf attribute for nested member
Pavel Březina • 5 years ago  
9a7c044
sss_sockets: pass pointer instead of integer
Pavel Březina • 5 years ago  
191f372
Add TCP level timeout to LDAP services
Simo Sorce • 5 years ago  
bad7c63
ci: add CentOS 7
Pavel Březina • 5 years ago  
702e5fd
util/watchdog: fixed watchdog implementation
Alexey Tikhonov • 5 years ago  
0c62066
ad: set min and max ssf for ldaps
Sumit Bose • 5 years ago  
9b875b8
ldap: add new option ldap_sasl_maxssf
Sumit Bose • 5 years ago  
07d1924
ad: add ad_use_ldaps
Sumit Bose • 5 years ago  
b2aca1f
ad: allow booleans for ad_inherit_opts_if_needed()
Sumit Bose • 5 years ago  
44e7605
tests: fix race condition in enumeration tests
Pavel Březina • 5 years ago  
ec8f5fd
INTG: Increase the sleep() time so the changes are reflected on SSSD
Fabiano Fidêncio • 5 years ago  
bcb79f6
ci: archive ci-mock-result
Pavel Březina • 5 years ago  
b9d419f
ci: set sssd-ci notification to pending state when job is started
Pavel Březina • 5 years ago  
7e6ab55
ci: add rhel7
Pavel Březina • 5 years ago  
d8eec71
nss: use real primary gid if the value is overriden
Pavel Březina • 5 years ago  
80e6f71
sudo: add ldap_sudorule_object_class_attr
Pavel Březina • 5 years ago  
634c1e0
sudo: use objectCategory instead of objectClass in ad sudo provider
Jakub Hrozek • 5 years ago  
fd8865e
sudo: get timezone information from previous value when constructing new usn
Pavel Březina • 5 years ago  
a1be9af
sudo: use proper datetime for default modifyTimestamp value
Pavel Březina • 5 years ago  
19e8a02
man: update sudo smart refresh documentation to reflect new USN behavior
Pavel Březina • 5 years ago  
fb2c54b
sdap: update last_usn on reconnect
Sumit Bose • 5 years ago  
3f370ad
sudo: always use server highest known usn for smart refresh
Pavel Březina • 5 years ago  
38d00c4
sudo: do not update last usn value on rules refresh
Pavel Březina • 5 years ago  
6384310
ipa: add failover to access checks
Sumit Bose • 5 years ago  
a4dd1eb
ipa: add failover to override lookups
Sumit Bose • 5 years ago  
4897063
SBUS: defer deallocation of sbus_watch_ctx
Alexey Tikhonov • 5 years ago  
f845355
ci: disable python2 bindings on Fedora 32+
Pavel Březina • 5 years ago  
5bdfc48
ci: install python2 on Fedora 31 and RHEL 8 so python2 bindings can be built
Pavel Březina • 5 years ago  
c2e2f38
ci: add Fedora 31
Pavel Březina • 5 years ago  
88f2c63
ci: allow to specify systems where tests should be run for on-demand tests
Pavel Březina • 5 years ago  
8b75c21
ci: store artifacts in jenkins for on-demand runs
Pavel Březina • 5 years ago  
91f7b6c
ipa: use the right context for autofs
Sumit Bose • 5 years ago  
a967afd
autofs: delete possible duplicate of an autofs entry
Pavel Březina • 5 years ago  
4160649
autofs: remove unused enum
Pavel Březina • 5 years ago  
04bd737
ci: convert to scripted pipeline
Pavel Březina • 5 years ago  
3a4d13c
ci: notify that build awaits executor
Pavel Březina • 5 years ago  
7374ac4
ci: set build name to pull request or branch name
Pavel Březina • 5 years ago  
1f6fdb9
ci: enable on demand runs
Pavel Březina • 5 years ago  
fc0be68
ipa: use LDAP not extdom to lookup IPA users and groups
Sumit Bose • 5 years ago  
fbd3890
providers/ipa/: add_v1_user_data() amended
Alexey Tikhonov • 5 years ago  
e294f73
pysss: use METH_VARARGS | METH_KEYWORDS instead of just METH_KEYWORDS
Pavel Březina • 5 years ago  
50dffac
testlib: Fix SyntaxWarning "is" with a literal
Lukas Slebodnik • 5 years ago  
c962c70
pysss_murmur: Fix DeprecationWarning PY_SSIZE_T_CLEAN
Lukas Slebodnik • 5 years ago  
0ba6af6
pysss: Fix DeprecationWarning PY_SSIZE_T_CLEAN
Lukas Slebodnik • 5 years ago  
8bc81b3
TESTS: Add minimal test for pysss encrypt
Lukas Slebodnik • 5 years ago  
8557cd9
SSSDConfig: Fix SyntaxWarning "is not" with a literal
Lukas Slebodnik • 5 years ago  
4f577e2
SSSDConfig: Add minimal test for parse method
Lukas Slebodnik • 5 years ago  
ed26a1e
pyhbac: Fix warning Wdiscarded-qualifiers
Lukas Slebodnik • 5 years ago  
4c2df3a
intg: Install python3 dependencies for intgcheck on new distros
Lukas Slebodnik • 5 years ago  
3a8ae6d
BUILD: Prefer python3 for intgcheck
Lukas Slebodnik • 5 years ago  
ec78515
INTG: Do hot hardcode version of python/pytest in intgcheck
Lukas Slebodnik • 5 years ago  
958f02d
BUILD: Move python checks for intgcheck to macro
Lukas Slebodnik • 5 years ago  
cd0d38c
BUILD: Change value of variable HAVE_PYTHON2/3_BINDINGS
Lukas Slebodnik • 5 years ago  
03ba5e7
BUILD: Add macro for checking pytest for intgcheck
Lukas Slebodnik • 5 years ago  
f9a4f72
BUILD: Move checking of python2 modules for intgcheck
Lukas Slebodnik • 5 years ago  
cf2b5ec
BUILD: Fix typo of detecting python module for intgcheck
Lukas Slebodnik • 5 years ago  
44735f8
BUILD: Add macro for checking python3 modules
Lukas Slebodnik • 5 years ago  
7b95242
ci: remove left overs from previous rebase
Pavel Březina • 5 years ago  
28668d2
ci: pep8 was renamed to pycodestyle in Fedora 31
Pavel Březina • 5 years ago  
d7fe861
ci: use python2 version of pytest
Pavel Březina • 5 years ago  
900ebdb
ci: add Debian suppresion path
Pavel Březina • 5 years ago  
b0e56ee
TESTS: adapt tests to enabled default files domain
Tomas Halman • 5 years ago  
e48cdfb
CONFDB: Files domain if activated without .conf
Tomas Halman • 5 years ago  
5b571ef
ipa: delete content of disabled domains
Sumit Bose • 5 years ago  
124957a
sysdb: add sysdb_subdomain_content_delete()
Sumit Bose • 5 years ago  
a9f03f0
ipa: ignore objects from disabled domains on the client
Sumit Bose • 5 years ago  
cc42fe7
ipa: support disabled domains
Sumit Bose • 5 years ago  
698e27d
utils: extend some find_domain_* calls to search disabled domain
Sumit Bose • 5 years ago  
2ea937a
ifp: call tevent_req_post in case of error in ifp_user_get_attr_send
Pavel Březina • 5 years ago  
cc7b936
ifp: let cache_req parse input name so it can fallback to upn search
Pavel Březina • 5 years ago  
c097e2b
ci: add pam wrapper
Sumit Bose • 5 years ago  
370dbcc
ci: suppress Debian valgrind errors
Pavel Březina • 5 years ago  
c8a4c8e
ci: allow distribution specific supression files
Pavel Březina • 5 years ago  
6b2c9e8
ci: add Debian 10
Pavel Březina • 5 years ago  
5157fcc
sss_cache: invalidate also autofs entries
Pavel Březina • 5 years ago  
9131b90
sysdb: invalidate also autofs entries
Pavel Březina • 5 years ago  
58f3d54
autofs: always refresh auto.master
Pavel Březina • 5 years ago  
ac71265
autofs: allow to run only setent without enumeration in test tool
Pavel Březina • 5 years ago  
3e04a81
ldap: implement autofs get entry
Pavel Březina • 5 years ago  
2e45258
ldap: implement autofs get map
Pavel Březina • 5 years ago  
fcb6f55
ldap: rename sdap_autofs_get_map to sdap_autofs_enumerate
Pavel Březina • 5 years ago  
bd15a13
ldap: add base_dn to sdap_search_bases
Pavel Březina • 5 years ago  
fb9a42d
dp: add additional autofs methods
Pavel Březina • 5 years ago  
0b780a0
dp: replace autofs handler with enumerate method
Pavel Březina • 5 years ago  
ca1ee99
autofs: use cache_req to obtain map in setent
Pavel Březina • 5 years ago  
61a7bf4
autofs: use cache_req to obtain single entry in getentrybyname
Pavel Březina • 5 years ago  
27d2dcf
autofs: convert code to cache_req
Pavel Březina • 5 years ago  
b0043a9
cache_req: add autofs entry by name plugin
Pavel Březina • 5 years ago  
6fe479a
cache_req: add autofs map by name plugin
Pavel Březina • 5 years ago  
e683556
cache_req: add autofs map entries plugin
Pavel Březina • 5 years ago  
01b7dc9
autofs: move data provider functions to responder common code
Pavel Březina • 5 years ago  
4665606
sysdb: add sysdb_del_autofsentry_by_key
Pavel Březina • 5 years ago  
49b5baf
sysdb: store original dn in autofs map
Pavel Březina • 5 years ago  
efe4459
sysdb: store enumeration expiration time in autofs map
Pavel Březina • 5 years ago  
11ffb77
sysdb: add enumerationExpireTimestamp
Pavel Březina • 5 years ago  
c366050
sysdb: add sysdb_get_autofsentry
Pavel Březina • 5 years ago  
57e3340
sysdb: add expiration time to autofs entries
Pavel Březina • 5 years ago  
ccf14f4
autofs: fix typo in test tool
Pavel Březina • 5 years ago  
49ad0b9
sss_ptr_hash: keep value pointer when destroying spy
Pavel Březina • 5 years ago  
00926ab
sss_ptr_hash: add sss_ptr_get_value to make it useful in delete callbacks
Pavel Březina • 5 years ago  
7956061
IPA/AD/LDAP: Increase the initgrExpireTimestamp after finishing refresh request
Jakub Hrozek • 5 years ago  
06fed80
DP/SYSDB: Move the code to set initgrExpireTimestamp to a reusable function
Jakub Hrozek • 5 years ago  
75b6695
MAN: Amend the documentation for the background refresh
Jakub Hrozek • 5 years ago  
1754e3e
IPA/AD/SDAP/BE: Generate refresh callbacks with a macro
Jakub Hrozek • 5 years ago  
8f02770
BE/IPA/AD/LDAP: Initialize the refresh callback from a list to reduce logic duplication
Jakub Hrozek • 5 years ago  
c3956d2
BE/IPA/AD/LDAP: Add inigroups refresh support
Jakub Hrozek • 5 years ago  
159d1af
IPA: Implement background refresh for IPA domains
Jakub Hrozek • 5 years ago  
468ee8b
AD: Implement background refresh for AD domains
Jakub Hrozek • 5 years ago  
25b66e2
BE: Schedule the refresh interval from the finish time of the last run
Jakub Hrozek • 5 years ago  
e1830ba
BE: Extend be_ptask_create() with control when to schedule next run after success
Jakub Hrozek • 5 years ago  
b7110e0
BE: Send refresh requests in batches
Jakub Hrozek • 5 years ago  
cb11886
BE: Pass in filter_type when creating the refresh account request
Jakub Hrozek • 5 years ago  
87cd4ec
BE/LDAP: Split out a helper function from sdap_refresh for later reuse
Jakub Hrozek • 5 years ago  
0ef02c9
BE: Change be_refresh_ctx_init to return errno and set be_ctx->refresh_ctx
Jakub Hrozek • 5 years ago  
8a8b234
BE: Pass in attribute to look up with instead of hardcoding SYSDB_NAME
Jakub Hrozek • 5 years ago  
5c60056
BE/LDAP: Call be_refresh_ctx_init() in the provider libraries, not in back end
Jakub Hrozek • 5 years ago  
936b423
BE: Make be_refresh_ctx_init set up the periodical task, too
Jakub Hrozek • 5 years ago  
c56e165
BE: Enable refresh for multiple domains
Jakub Hrozek • 5 years ago  
6bd021d
BE: search with sysdb_search_with_ts_attr
Jakub Hrozek • 5 years ago  
3ee57e7
SYSDB: Add sysdb_search_with_ts_attr
Jakub Hrozek • 5 years ago  
bca2f94
IPA: Allow paging when fetching external groups
Jakub Hrozek • 5 years ago  
0ca64be
ad: make ad_enabled_domains case insensitive
Pavel Březina • 5 years ago  
0b6f144
ad: remove all subdomains if only master domain is enabled
Pavel Březina • 5 years ago  
5605fa5
sysdb: add sysdb_list_subdomains()
Pavel Březina • 5 years ago  
3c6c9d4
sysdb: read and interpret domain's enabled attribute
Pavel Březina • 5 years ago  
b2cd4a7
ad: set enabled=false attribute for subdomains that no longer exists
Pavel Březina • 5 years ago  
800d24d
sysdb: add sysdb_domain_set_enabled()
Pavel Březina • 5 years ago  
0e16ec7
ad: remove subdomain that has been disabled through ad_enabled_domains from sysdb
Pavel Březina • 5 years ago  
c9c2b60
nss: Fix command 'endservent' resetting wrong struct member
Samuel Cabrero • 5 years ago  
9673ca8
ci: print node on which the test is being run
Pavel Březina • 5 years ago  
85dab31
ci: rebase pull request on the target branch
Pavel Březina • 5 years ago  
8003e32
ci: switch to new tooling and remove 'Read trusted files' stage
Pavel Březina • 5 years ago  
f988c87
ci: enable sssd-ci for 1-16 branch
Pavel Březina • 5 years ago  
23ad178
LDAP: failover does not work on non-responsive ldaps
Tomas Halman • 5 years ago  
442cd65
util/find_uid.c: fixed race condition bug
Alexey Tikhonov • 5 years ago  
fb50da2
util/find_uid.c: fixed debug message
Alexey Tikhonov • 5 years ago  
7b3c8e8
CACHE: SSSD doesn't clear cache entries
Tomas Halman • 5 years ago  
fb3f1af
negcache: add fq-usernames of know domains to all UPN neg-caches
Sumit Bose • 5 years ago  
934341e
TESTS: Add a unit test for UPNs stored by sss_ncache_prepopulate
Jakub Hrozek • 5 years ago  
05b37ac
util/tev_curl: Fix double free error in schedule_fd_processing()
Alexey Tikhonov • 5 years ago  
37718f8
BUILD: fix libpython handling in Python3.8
Sumit Bose • 5 years ago  
8f45a02
CI: use python3-pep8 on Fedora 31 and later
Sumit Bose • 5 years ago  
3a92a87
tests: fix enctypes in test_copy_keytab
Sumit Bose • 5 years ago  
9b8c66d
knownhostsproxy: friendly error msg for NXDOMAIN
Branen Salmon • 5 years ago  
7fe2b44
LDAP: Return the error message from the extended operation password change also on failure
Jakub Hrozek • 5 years ago  
4ab1b75
DP: add NULL check to be_ptask_{enable|disable}
Sumit Bose • 5 years ago  
cb94d00
SUDO: Allow defaults sudoRole without sudoUser attribute
Samuel Cabrero • 5 years ago  
2173201
sdap: inherit SDAP_SASL_MECH if not set explicitly
Sumit Bose • 5 years ago  
373b113
SDAP: allow GSS-SPNEGO for LDAP SASL bind as well
Sumit Bose • 5 years ago  
f5d031b
PAM: Also cache SSS_PAM_PREAUTH
Jakub Hrozek • 5 years ago  
0a637ff
winbind idmap plugin: update struct idmap_domain to latest version
Sumit Bose • 6 years ago  
e673478
intg: add test for password prompt configuration
Sumit Bose • 6 years ago  
558b543
getsockopt_wrapper: add support for PAM clients
Sumit Bose • 6 years ago  
efefac9
PAM: add initial prompting configuration
Sumit Bose • 6 years ago  
c91c6dd
pam_sss: use configured prompting
Sumit Bose • 6 years ago  
ca65bfd
authtok: add dedicated type for 2fa with single string
Sumit Bose • 6 years ago  
d453f92
pam: introduce prompt_config struct
Sumit Bose • 6 years ago  
ceb4c8e
ipa: ipa_getkeytab don't call libnss_sss
Sumit Bose • 6 years ago  
b927dc7
krb5: Lookahead resolving of host names
Tomas Halman • 6 years ago  
ec0c31a
ci/sssd.supp: getpwuid() leak suppression
Alexey Tikhonov • 6 years ago  
b05f98e
TESTS: moved cwrap/test_negcache to cmocka tests
Alexey Tikhonov • 6 years ago  
5bba0d3
negcache_files: got rid of large array on stack
Alexey Tikhonov • 6 years ago  
cc6d16a
responder/negcache: avoid calling nsswitch NSS API
Alexey Tikhonov • 6 years ago  
8ba8b71
Util: added facility to load nss lib syms
Alexey Tikhonov • 6 years ago  
33ac11f
krb5: Silence an error message if no cache entries have ccache stored but renewal is enabled
Jakub Hrozek • 6 years ago  
23fb7ea
SYSDB: Index the ccacheFile attribute
Jakub Hrozek • 6 years ago  
7d8b28a
krb5: Do not use unindexed objectCategory in a search filter
Jakub Hrozek • 6 years ago  
e4dd284
Providers: Delay online check on startup
Tomas Halman • 6 years ago  
dab5562
KCM: Fall back to using the first ccache if the default does not exist
Jakub Hrozek • 6 years ago  
6c568c9
sudo: format runas attributes to correct output name
Pavel Březina • 6 years ago  
3a18e33
ipa: store sudo runas attribute with internal fqname
Pavel Březina • 6 years ago  
5ad7f5e
IPA: Use dereference for host groups even if the configuration disables dereference
Jakub Hrozek • 6 years ago  
2c97edb
SDAP: Add sdap_has_deref_support_ex()
Jakub Hrozek • 6 years ago  
eaceb6a
AD: Allow configuring auto_private_groups per subdomain or with subdomain_inherit
Jakub Hrozek • 6 years ago  
6f6b3b1
SYSDB: Inherit cached_auth_timeout from the main domain
Jakub Hrozek • 6 years ago  
fedfc4f
GPO: Add option ad_gpo_ignore_unreadable
Michal Židek • 6 years ago  
ad05801
krb5: Write multiple dnsnames into kdc info file
Tomas Halman • 6 years ago  
c225ed7
Updating the version for 1.16.5
Jakub Hrozek • 6 years ago  
f2f5539
Updating the translations for the 1.16.4 release
Jakub Hrozek • 6 years ago  
4f47ff6
be: remember last good server's name instead of fo_server structure
Pavel Březina • 6 years ago  
705fd73
TESTS: Add integration tests for auto_private_groups=hybrid
Jakub Hrozek • 6 years ago  
64b855d
NSS: Add the hybrid-MPG mode
Jakub Hrozek • 6 years ago  
c083df0
CACHE_REQ: Add cache_req_data_get_type()
Jakub Hrozek • 6 years ago  
271544b
CONFDB/SYSDB: Add the hybrid MPG mode
Jakub Hrozek • 6 years ago  
e09dffe
CONFDB: Read auto_private_groups as string, not bool
Jakub Hrozek • 6 years ago  
e0c34a6
UTIL: Convert bool mpg to an enum mpg_mode
Jakub Hrozek • 6 years ago  
e01473a
UTIL: Add a is_domain_mpg shorthand
Jakub Hrozek • 6 years ago  
15f0177
sudo ipa: do not store rules without sudoHost attribute
Pavel Březina • 6 years ago  
e2f00ae
sdap: use ldap_pwmodify_mode to change password
Pavel Březina • 6 years ago  
0a52934
sdap: split password change to separate request
Pavel Březina • 6 years ago  
8d6fa49
sdap: add ldap_pwmodify_mode option
Pavel Březina • 6 years ago  
be591f0
sdap: add sdap_modify_passwd_send
Pavel Březina • 6 years ago  
93a3a20
krb5_locator: Allow hostname in kdcinfo files
Tomas Halman • 6 years ago  
96e4d71
Monitor: changed provider startup timeout
Alexey Tikhonov • 6 years ago  
5b0bb56
ipa s2n: try to remove objects not found on the server
Sumit Bose • 6 years ago  
3bed774
ipa s2n: do not add UPG member
Sumit Bose • 6 years ago  
b424c8a
ipa s2n: fix typo
Sumit Bose • 6 years ago  
c382167
ldap: make groups_get_handle_no_group() public
Sumit Bose • 6 years ago  
19fbcd1
ldap: add users_get_handle_no_user()
Sumit Bose • 6 years ago  
cca3394
negcache: avoid "is_*_local" calls in some cases
Alexey Tikhonov • 6 years ago  
6ff0119
TESTS: Only use __wrap_sss_ncache_reset_repopulate_permanent to finish test if needed
Jakub Hrozek • 6 years ago  
4c1b2d4
netgroups: honor cache_refresh_percent
Pavel Březina • 6 years ago  
486b552
ci/sssd.supp: fixed c-ares-suppress-leak-from-init
Alexey Tikhonov • 6 years ago  
2fb5be4
NEGCACHE: repopulate negative cache after get_domains
Sumit Bose • 6 years ago  
faede6d
NEGCACHE: fix typo in debug message
Sumit Bose • 6 years ago  
720907d
NEGCACHE: initialize UPN negative cache as well
Sumit Bose • 6 years ago  
6bb46a6
ent_test: Update assertions for python 3.7.2
Lukas Slebodnik • 6 years ago  
f441617
Revert "intg: Generate tmp dir with lowercase"
Lukas Slebodnik • 6 years ago  
688134e
test_ldap: Do not uses pytest fixtures as functions
Lukas Slebodnik • 6 years ago  
0fb6543
test_files_provider: Do not use pytest fixtures as functions
Lukas Slebodnik • 6 years ago  
2805121
NSS: Avoid changing the memory cache ownership away from the sssd user
Jakub Hrozek • 6 years ago  
118c44f
krb5_locator: always use port 88 for master KDC
Sumit Bose • 6 years ago  
1791eed
ldap: user get_ldap_conn_from_sdom_pvt() where possible
Sumit Bose • 6 years ago  
f80dad6
ldap: prefer LDAP port during initgroups user lookup
Sumit Bose • 6 years ago  
0b5a359
ldap: add get_ldap_conn_from_sdom_pvt
Sumit Bose • 6 years ago  
8ffc64c
responder: fix domain lookup refresh timeout
Sumit Bose • 6 years ago  
3824008
GPO: Allow customization of GPO_CROND per OS
Victor Tapia • 6 years ago  
8ba4727
GPO: Add gpo_implicit_deny option
Michal Židek • 6 years ago  
c96a382
CONFIG: add missing ldap attributes for validation
Thorsten Scherf • 6 years ago  
5e70cf5
Added note about default value of ad_gpo_map_batch parameter
mateusz • 6 years ago  
db06ec5
ssh: p11_child error message is too generic
Tomas Halman • 6 years ago  
340de23
ssh: sssd_ssh fails completely on p11_child timeout
Tomas Halman • 6 years ago  
31637fd
ad: replace ARRAY_SIZE with N_ELEMENTS
Sumit Bose • 6 years ago  
911d7bb
utils: make N_ELEMENTS public
Sumit Bose • 6 years ago  
0a27fba
lib/cifs_idmap_sss: fixed unaligned mem access
Alexey Tikhonov • 6 years ago  
acce032
Fix error in hostname retrieval
Alexey Tikhonov • 6 years ago  
d6ed04f
test_sss_cache: Add test case for wrong domain in parameter
Lukas Slebodnik • 6 years ago  
3ec716b
sss_cache: Fail if unknown domain is passed in parameter
Lukas Slebodnik • 6 years ago  
6c80847
NSS: Do not use deprecated header files
Lukas Slebodnik • 6 years ago  
9e6a224
BUILD: Fix condition for building sssd-kcm man page
Lukas Slebodnik • 6 years ago  
8f0a2ac
SSSDConfigTest: Remove usage of failUnless
Lukas Slebodnik • 6 years ago  
3c0213f
SSSDConfig: Fix ResourceWarning unclosed file
Lukas Slebodnik • 6 years ago  
07d7eea
SSSDConfigTest: Do not use assertEquals
Lukas Slebodnik • 6 years ago  
b27ab9e
pyhbac-test: Do not use assertEquals
Lukas Slebodnik • 6 years ago  
088eb54
test_sss_cache: Add test case for invalidating missing entries
Lukas Slebodnik • 6 years ago  
7983826
sss_cache: Do not fail if noting was cached
Lukas Slebodnik • 6 years ago  
498aaac
intg: Add test for sss_cache & shadow-utils use-case
Lukas Slebodnik • 6 years ago  
0a27a47
sss_cache: Do not fail for missing domains
Lukas Slebodnik • 6 years ago  
8e6c52f
nss: sssd returns '/' for emtpy home directories
Tomas Halman • 6 years ago  
2879252
ipa: use only the global catalog service of the forest root
Sumit Bose • 6 years ago  
74568bd
Revert "IPA: use forest name when looking up the Global Catalog"
Sumit Bose • 6 years ago  
d33ec64
tests: increase p11_child_timeout
Sumit Bose • 6 years ago  
19e6c50
tests: fix mocking krb5_creds in test_copy_ccache
Sumit Bose • 6 years ago  
d1c9308
BUILD: Accept krb5 1.17 for building the PAC plugin
Sumit Bose • 6 years ago  
9e85879
CI: Modify suppression file for c-ares-1.15.0
Lukas Slebodnik • 6 years ago  
517fe07
INTG: Show extra test summary info with pytest
Lukas Slebodnik • 6 years ago  
de7f877
test_pac_responder: Skip test if pac responder is not installed
Lukas Slebodnik • 6 years ago  
e80e869
UTIL: Fix compilation with curl 7.62.0
Lukas Slebodnik • 6 years ago  
4d3841c
LDAP: Log the encryption used during LDAP authentication
Sumit Bose • 6 years ago  
1a7c6ab
LDAP: Only authenticate the auth connection if we need to look up user information
Jakub Hrozek • 6 years ago  
7eb18ab
LDAP: minor refactoring in auth_send() to conform to our coding style
Jakub Hrozek • 6 years ago  
876f1cb
nss: use enumeration context as talloc parent for cache req result
Pavel Březina • 6 years ago  
720a423
pep8: Ignore W504 and W605 to silence warnings on Debian
Jakub Hrozek • 6 years ago  
bca1935
sudo: respect case sensitivity in sudo responder
Pavel Březina • 6 years ago  
2d92861
intg: flush the SSSD caches to sync with files
Sumit Bose • 6 years ago  
3dc8853
SELINUX: Always add SELinux user to the semanage database if it doesn't exist
Jakub Hrozek • 6 years ago  
e7e942c
krb5: do not cache ccache or password during preauth
Sumit Bose • 4 years ago  
895aa34
ipa_auth and krb5_auth: when providing wrong password return PAM_AUTH_ERR
ikerexxe • 5 years ago  
b118557
SPEC: 'sssd.api.*' should belong `python-sssdconfig`
Alexey Tikhonov • 5 years ago  
0ecc498
SPEC: added explicit `samba-client-libs` dependency
Alexey Tikhonov • 5 years ago  
d742192
DOMAIN: Downgrade log message type
Paweł Poławski • 5 years ago  
5774526
sysdb: check if the id override belongs to requested domain
Pavel Březina • 5 years ago  
a63e00f
krb5_child: fix permissions during SC auth
Sumit Bose • 5 years ago  
a61b80d
SYSDB: Cache selector as enum
Paweł Poławski • 5 years ago  
d93b4fe
LDAP: Netgroups refresh in background task
Paweł Poławski • 5 years ago  
838db43
providers/proxy: fixed erroneous free of orig_grp
Alexey Tikhonov • 5 years ago  
e61f361
providers/proxy: got rid of excessive mem copies
Alexey Tikhonov • 5 years ago  
f6d20a5
providers/proxy: fixed usage of wrong mem ctx
Alexey Tikhonov • 5 years ago  
34412b2
providers/proxy: fixed wrong check
Alexey Tikhonov • 5 years ago  
80bfea5
providers/proxy: small optimization
Alexey Tikhonov • 5 years ago  
66b979b
CI: Drop usage of unnecessary copr repo for mock
Lukas Slebodnik • 5 years ago  
b76d220
mem-cache: sizes of free and data tables were made consistent
Alexey Tikhonov • 5 years ago  
38d4eab
SYSDB: override_gid not working for subdomains
Tomas Halman • 5 years ago  
91475e5
config: add dns_resolver_op_timeout to option list
Pavel Březina • 5 years ago  
7cb6a9f
sysdb: sanitize certmap rule name before using it in DN
Sumit Bose • 5 years ago  
f68b4da
ipa: add missing new-line in debug message
Sumit Bose • 5 years ago  
e4f3cf6
sssd.spec.in: added missing Requires
Alexey Tikhonov • 5 years ago  
ed76858
Watchdog: fixes "off-by-one" error
Alexey Tikhonov • 5 years ago  
b46e2d4
Updating the version for 1.16.6
Michal Židek • 5 years ago  
5ea484b
translation: Add missing new lines
Michal Židek • 5 years ago  
c2053e9
Updated translation files.
Michal Židek • 5 years ago  
a4974d1
SBUS: fixed off-by-one error" in sbus_auto_reconnect()
Alexey Tikhonov • 5 years ago  
a1bdab3
sdap: provide error message when password change fail in ldap_modify mode
Pavel Březina • 5 years ago  
ddf0a59
failover: make sure we switch to another server if only port differs
Pavel Březina • 5 years ago  
4b1d1a0
TESTS: added sss_ptr_hash unit test
Alexey Tikhonov • 5 years ago  
c0d6419
sss_ptr_hash: pass new hash_entry_t to custom delete callback
Pavel Březina • 5 years ago  
7f46c85
ci: remove old dependency repository
Pavel Březina • 5 years ago  
1066130
ci: keep system list outside repository
Pavel Březina • 5 years ago  
78cf8b1
memberof: keep memberOf attribute for nested member
Pavel Březina • 5 years ago  
9a7c044
sss_sockets: pass pointer instead of integer
Pavel Březina • 5 years ago  
191f372
Add TCP level timeout to LDAP services
Simo Sorce • 5 years ago  
bad7c63
ci: add CentOS 7
Pavel Březina • 5 years ago  
702e5fd
util/watchdog: fixed watchdog implementation
Alexey Tikhonov • 5 years ago  
0c62066
ad: set min and max ssf for ldaps
Sumit Bose • 5 years ago  
9b875b8
ldap: add new option ldap_sasl_maxssf
Sumit Bose • 5 years ago  
07d1924
ad: add ad_use_ldaps
Sumit Bose • 5 years ago  
b2aca1f
ad: allow booleans for ad_inherit_opts_if_needed()
Sumit Bose • 5 years ago  
44e7605
tests: fix race condition in enumeration tests
Pavel Březina • 5 years ago  
ec8f5fd
INTG: Increase the sleep() time so the changes are reflected on SSSD
Fabiano Fidêncio • 5 years ago  
bcb79f6
ci: archive ci-mock-result
Pavel Březina • 5 years ago  
b9d419f
ci: set sssd-ci notification to pending state when job is started
Pavel Březina • 5 years ago  
7e6ab55
ci: add rhel7
Pavel Březina • 5 years ago  
d8eec71
nss: use real primary gid if the value is overriden
Pavel Březina • 5 years ago  
80e6f71
sudo: add ldap_sudorule_object_class_attr
Pavel Březina • 5 years ago  
634c1e0
sudo: use objectCategory instead of objectClass in ad sudo provider
Jakub Hrozek • 5 years ago  
fd8865e
sudo: get timezone information from previous value when constructing new usn
Pavel Březina • 5 years ago  
a1be9af
sudo: use proper datetime for default modifyTimestamp value
Pavel Březina • 5 years ago  
19e8a02
  • « Newer
  • page 1 of 175
  • » Older
Powered by Pagure 5.14.1
Documentation • File an Issue • About • SSH Hostkey/Fingerprint
© Red Hat, Inc. and others.