Skip to content

CentOS 7 - Updates for x86_64: development/libraries: libsss_certmap

libsss_certmap - SSSD Certficate Mapping Library

Website: https://pagure.io/SSSD/sssd/
License: LGPLv3+
Vendor: CentOS
Description:
Library to map certificates to users based on rules

Packages

libsss_certmap-1.16.5-10.el7_9.16.i686 [192 KiB] Changelog by Eduardo Lima (Etrunko) (2023-11-16):
- Resolves: RHEL-16003 - sssd : AD user login problem when modify ldap_user_name= name and restricted by GPO Policy [rhel-7.9.z]
libsss_certmap-1.16.5-10.el7_9.16.x86_64 [193 KiB] Changelog by Eduardo Lima (Etrunko) (2023-11-16):
- Resolves: RHEL-16003 - sssd : AD user login problem when modify ldap_user_name= name and restricted by GPO Policy [rhel-7.9.z]
libsss_certmap-1.16.5-10.el7_9.15.x86_64 [193 KiB] Changelog by Alexey Tikhonov (2023-01-06):
- Resolves: rhbz#2149703 - smartcards: special characters must be escaped when building search filter [rhel-7.9.z]
- Resolves: rhbz#2149902 - EMBARGOED CVE-2022-4254 sssd: libsss_certmap fails to sanitise certificate data used in LDAP filters [rhel-7.9.z]
libsss_certmap-1.16.5-10.el7_9.15.i686 [192 KiB] Changelog by Alexey Tikhonov (2023-01-06):
- Resolves: rhbz#2149703 - smartcards: special characters must be escaped when building search filter [rhel-7.9.z]
- Resolves: rhbz#2149902 - EMBARGOED CVE-2022-4254 sssd: libsss_certmap fails to sanitise certificate data used in LDAP filters [rhel-7.9.z]
libsss_certmap-1.16.5-10.el7_9.14.x86_64 [191 KiB] Changelog by Alexey Tikhonov (2022-11-15):
- Resolves: rhbz#2097014 - SSSD -> sssd_be and sssd_ifp coredump [rhel-7.9.z]
- Resolves: rhbz#2107380 - sssd timezone issues sudonotafter [rhel-7.9.z]
- Resolves: rhbz#2116207 - SSSD starting offline after reboot [rhel-7.9.z]
libsss_certmap-1.16.5-10.el7_9.14.i686 [190 KiB] Changelog by Alexey Tikhonov (2022-11-15):
- Resolves: rhbz#2097014 - SSSD -> sssd_be and sssd_ifp coredump [rhel-7.9.z]
- Resolves: rhbz#2107380 - sssd timezone issues sudonotafter [rhel-7.9.z]
- Resolves: rhbz#2116207 - SSSD starting offline after reboot [rhel-7.9.z]
libsss_certmap-1.16.5-10.el7_9.13.x86_64 [190 KiB] Changelog by Alexey Tikhonov (2022-06-10):
- Resolves: rhbz#2079441 - SSSD update prompts for smartcard pin twice - After update to 7.9 [rhel-7.9.z]
- Resolves: rhbz#2073352 - Use right sdap_domain in ad_domain_info_send [rhel-7.9.z]
libsss_certmap-1.16.5-10.el7_9.13.i686 [190 KiB] Changelog by Alexey Tikhonov (2022-06-10):
- Resolves: rhbz#2079441 - SSSD update prompts for smartcard pin twice - After update to 7.9 [rhel-7.9.z]
- Resolves: rhbz#2073352 - Use right sdap_domain in ad_domain_info_send [rhel-7.9.z]
libsss_certmap-1.16.5-10.el7_9.12.i686 [190 KiB] Changelog by Alexey Tikhonov (2022-01-31):
- Resolves: rhbz#2006382 - IPA Intermittence fetching groups
- Resolves: rhbz#2006866 - sssd_be segfault due to empty forest root name
- Resolves: rhbz#2031729 - IPA clients fail to resolve override group names.
- Resolves: rhbz#2032867 - AD Domain in the AD Forest Missing after sssd latest update
libsss_certmap-1.16.5-10.el7_9.12.x86_64 [190 KiB] Changelog by Alexey Tikhonov (2022-01-31):
- Resolves: rhbz#2006382 - IPA Intermittence fetching groups
- Resolves: rhbz#2006866 - sssd_be segfault due to empty forest root name
- Resolves: rhbz#2031729 - IPA clients fail to resolve override group names.
- Resolves: rhbz#2032867 - AD Domain in the AD Forest Missing after sssd latest update
libsss_certmap-1.16.5-10.el7_9.11.i686 [189 KiB] Changelog by Alexey Tikhonov (2021-11-02):
- Resolves: rhbz#1968316 - SSSD: User authentication failing after server reboot.
- Resolves: rhbz#2000238 - disabled root ad domain causes subdomains to be marked offline
- Resolves: rhbz#1984591 - After sssd update to 1.16.5-10.el7_9.8.x86_64 the customer is facing slow connection/authentication (due to discovery of unexpected AD domains)
libsss_certmap-1.16.5-10.el7_9.11.x86_64 [190 KiB] Changelog by Alexey Tikhonov (2021-11-02):
- Resolves: rhbz#1968316 - SSSD: User authentication failing after server reboot.
- Resolves: rhbz#2000238 - disabled root ad domain causes subdomains to be marked offline
- Resolves: rhbz#1984591 - After sssd update to 1.16.5-10.el7_9.8.x86_64 the customer is facing slow connection/authentication (due to discovery of unexpected AD domains)
libsss_certmap-1.16.5-10.el7_9.10.x86_64 [190 KiB] Changelog by Alexey Tikhonov (2021-08-11):
- Resolves: rhbz#1973796 - SSSD is NOT able to contact the Global Catalog when local site is down
libsss_certmap-1.16.5-10.el7_9.10.i686 [189 KiB] Changelog by Alexey Tikhonov (2021-08-11):
- Resolves: rhbz#1973796 - SSSD is NOT able to contact the Global Catalog when local site is down
libsss_certmap-1.16.5-10.el7_9.8.i686 [188 KiB] Changelog by Alexey Tikhonov (2021-04-26):
- Resolves: rhbz#1910131 - sssd throwing error " Unable to parse name test' [1432158283]: The internal name format cannot be parsed" at debug_level 2 [rhel-7.9.z]
- Resolves: rhbz#1922244 - First smart refresh query contains modifyTimestamp even if the modifyTimestamp is 0. [rhel-7.9.z]
- Resolves: rhbz#1935685 - SSSD not detecting subdomain from AD forest (7.9z)
- Resolves: rhbz#1945552 - IPA missing secondary IPA Posix groups in latest sssd 1.16.5-10.el7_9.7 [rhel-7.9.z]
- Resolves: rhbz#1839972 - Authentication handshake (ldap_install_tls()) fails due to underlying openssl operation failing with EINTR [rhel-7.9.z]
libsss_certmap-1.16.5-10.el7_9.8.x86_64 [189 KiB] Changelog by Alexey Tikhonov (2021-04-26):
- Resolves: rhbz#1910131 - sssd throwing error " Unable to parse name test' [1432158283]: The internal name format cannot be parsed" at debug_level 2 [rhel-7.9.z]
- Resolves: rhbz#1922244 - First smart refresh query contains modifyTimestamp even if the modifyTimestamp is 0. [rhel-7.9.z]
- Resolves: rhbz#1935685 - SSSD not detecting subdomain from AD forest (7.9z)
- Resolves: rhbz#1945552 - IPA missing secondary IPA Posix groups in latest sssd 1.16.5-10.el7_9.7 [rhel-7.9.z]
- Resolves: rhbz#1839972 - Authentication handshake (ldap_install_tls()) fails due to underlying openssl operation failing with EINTR [rhel-7.9.z]
libsss_certmap-1.16.5-10.el7_9.7.i686 [188 KiB] Changelog by Alexey Tikhonov (2020-12-10):
- Resolves: rhbz#1875514 - filter_groups option partially filters the group from 'id' output of the user because gidNumber still appears in 'id' output [rhel-7.9.z]
- Resolves: rhbz#1772513 - SSSD is generating lot of LDAP queries in a very large environment [rhel-7.9.z]
- Resolves: rhbz#1736845 - [RFE] Backporting certificate matching rules for files, AD and LDAP provider [rhel-7.9.z]
libsss_certmap-1.16.5-10.el7_9.7.x86_64 [188 KiB] Changelog by Alexey Tikhonov (2020-12-10):
- Resolves: rhbz#1875514 - filter_groups option partially filters the group from 'id' output of the user because gidNumber still appears in 'id' output [rhel-7.9.z]
- Resolves: rhbz#1772513 - SSSD is generating lot of LDAP queries in a very large environment [rhel-7.9.z]
- Resolves: rhbz#1736845 - [RFE] Backporting certificate matching rules for files, AD and LDAP provider [rhel-7.9.z]
libsss_certmap-1.16.5-10.el7_9.6.i686 [187 KiB] Changelog by Alexey Tikhonov (2020-11-25):
- Resolves: rhbz#1899593 - sssd_be segfaults at be_refresh_get_values_ex() due to NULL ptrs in results of sysdb_search_with_ts_attr() [rhel-7.9.z]
- Resolves: rhbz#1888409 - sssd component logging is now too generic in syslog/journal [rhel-7.9.z]
- Resolves: rhbz#1852659 - sssd service is starting even though it is disabled state [rhel-7.9.z]
- Resolves: rhbz#1893443 - User lookups over the InfoPipe responder fail intermittently [rhel-7.9.z]
- Resolves: rhbz#1871288 - krb5_child denies ssh users when pki device detected [rhel-7.9.z]
- Resolves: rhbz#1853703 - Unexpected behavior and issue with filter_users/filter_groups option [rhel-7.9.z]
- Resolves: rhbz#1756240 - [RfE] Implement a new sssd.conf option to disable the filter for AD domain local groups from trusted domains [rhel-7.9.z]
- Resolves: rhbz#1851112 - LDAP bind can fail due to unconfigurable DNS server timeouts that inhibit SSSD failover [rhel-7.9.z]
libsss_certmap-1.16.5-10.el7_9.6.x86_64 [188 KiB] Changelog by Alexey Tikhonov (2020-11-25):
- Resolves: rhbz#1899593 - sssd_be segfaults at be_refresh_get_values_ex() due to NULL ptrs in results of sysdb_search_with_ts_attr() [rhel-7.9.z]
- Resolves: rhbz#1888409 - sssd component logging is now too generic in syslog/journal [rhel-7.9.z]
- Resolves: rhbz#1852659 - sssd service is starting even though it is disabled state [rhel-7.9.z]
- Resolves: rhbz#1893443 - User lookups over the InfoPipe responder fail intermittently [rhel-7.9.z]
- Resolves: rhbz#1871288 - krb5_child denies ssh users when pki device detected [rhel-7.9.z]
- Resolves: rhbz#1853703 - Unexpected behavior and issue with filter_users/filter_groups option [rhel-7.9.z]
- Resolves: rhbz#1756240 - [RfE] Implement a new sssd.conf option to disable the filter for AD domain local groups from trusted domains [rhel-7.9.z]
- Resolves: rhbz#1851112 - LDAP bind can fail due to unconfigurable DNS server timeouts that inhibit SSSD failover [rhel-7.9.z]
libsss_certmap-1.16.5-10.el7_9.5.x86_64 [187 KiB] Changelog by Alexey Tikhonov (2020-08-28):
- Resolves: rhbz#1859554 - Secondary LDAP group go missing from 'id' command on RHEL 7.8 with sssd-1.16.2-37.el7_8.1 [rhel-7.9.z]
  (Previous attempt to fix this issue was incomplete (again))
- just bumping the version to build for proper target
libsss_certmap-1.16.5-10.el7_9.5.i686 [186 KiB] Changelog by Alexey Tikhonov (2020-08-28):
- Resolves: rhbz#1859554 - Secondary LDAP group go missing from 'id' command on RHEL 7.8 with sssd-1.16.2-37.el7_8.1 [rhel-7.9.z]
  (Previous attempt to fix this issue was incomplete (again))
- just bumping the version to build for proper target
libsss_certmap-1.16.5-10.el7.x86_64 [185 KiB] Changelog by Alexey Tikhonov (2020-06-05):
- Resolves: rhbz#1804005 - sssd doesn't follow the link order of AD Group Policy Management
- Resolves: rhbz#1773409 - sssd is failing to discover other subdomains in the forest if LDAP entries do not contain AD forest root information
- Resolves: rhbz#1551077 - GDM failure loop when no user mapped for smart card
- Resolves: rhbz#1507683 - GDM password prompt when cert mapped to multiple users and promptusername is False
libsss_certmap-1.16.5-10.el7.i686 [185 KiB] Changelog by Alexey Tikhonov (2020-06-05):
- Resolves: rhbz#1804005 - sssd doesn't follow the link order of AD Group Policy Management
- Resolves: rhbz#1773409 - sssd is failing to discover other subdomains in the forest if LDAP entries do not contain AD forest root information
- Resolves: rhbz#1551077 - GDM failure loop when no user mapped for smart card
- Resolves: rhbz#1507683 - GDM password prompt when cert mapped to multiple users and promptusername is False
libsss_certmap-1.16.4-37.el7_8.4.x86_64 [178 KiB] Changelog by Alexey Tikhonov (2020-06-12):
- Resolves: rhbz#1842861 - sssd boots offline if symlink for /etc/resolv.conf is broken/missing [rhel-7.8.z]
- Resolves: rhbz#1845009 - [Bug] Reduce logging about flat names [rhel-7.8.z]
libsss_certmap-1.16.4-37.el7_8.4.i686 [178 KiB] Changelog by Alexey Tikhonov (2020-06-12):
- Resolves: rhbz#1842861 - sssd boots offline if symlink for /etc/resolv.conf is broken/missing [rhel-7.8.z]
- Resolves: rhbz#1845009 - [Bug] Reduce logging about flat names [rhel-7.8.z]
libsss_certmap-1.16.4-37.el7_8.3.i686 [178 KiB] Changelog by Alexey Tikhonov (2020-03-27):
- Resolves: rhbz#1817380 - Removing an IPA sub-group should NOT remove the members
                           from indirect parent that also belong to other subgroups
                           [rhel-7.8.z]
libsss_certmap-1.16.4-37.el7_8.3.x86_64 [178 KiB] Changelog by Alexey Tikhonov (2020-03-27):
- Resolves: rhbz#1817380 - Removing an IPA sub-group should NOT remove the members
                           from indirect parent that also belong to other subgroups
                           [rhel-7.8.z]
libsss_certmap-1.16.4-37.el7.i686 [177 KiB] Changelog by Michal Židek (2020-01-15):
- Resolves: rhbz#1784620 - Force LDAPS over 636 with AD Access Provider
- just bumping the version to fix generated dates in man pages
libsss_certmap-1.16.4-37.el7.x86_64 [177 KiB] Changelog by Michal Židek (2020-01-15):
- Resolves: rhbz#1784620 - Force LDAPS over 636 with AD Access Provider
- just bumping the version to fix generated dates in man pages
libsss_certmap-1.16.4-21.el7_7.3.x86_64 [175 KiB] Changelog by Alexey Tikhonov (2020-03-01):
- Resolves: rhbz#1807934 - sssd failover leads to delayed and failed logins
                           [rhel-7.7.z]
libsss_certmap-1.16.4-21.el7_7.3.i686 [175 KiB] Changelog by Alexey Tikhonov (2020-03-01):
- Resolves: rhbz#1807934 - sssd failover leads to delayed and failed logins
                           [rhel-7.7.z]
libsss_certmap-1.16.4-21.el7_7.1.i686 [174 KiB] Changelog by Michal Židek (2019-10-09):
- Resolves: rhbz#1758566 - negative cache does not use values from 'filter_users'
                           config option for known domains [rhel-7.7.z]
libsss_certmap-1.16.4-21.el7_7.1.x86_64 [175 KiB] Changelog by Michal Židek (2019-10-09):
- Resolves: rhbz#1758566 - negative cache does not use values from 'filter_users'
                           config option for known domains [rhel-7.7.z]
libsss_certmap-1.16.4-21.el7.i686 [174 KiB] Changelog by Michal Židek (2019-06-07):
- Resolves: rhbz#1714952 - [sssd] RHEL 7.7 Tier 0 Localization
- Rebuild japanese gmo file explicitly
libsss_certmap-1.16.4-21.el7.x86_64 [175 KiB] Changelog by Michal Židek (2019-06-07):
- Resolves: rhbz#1714952 - [sssd] RHEL 7.7 Tier 0 Localization
- Rebuild japanese gmo file explicitly
libsss_certmap-1.16.2-13.el7_6.8.i686 [171 KiB] Changelog by Michal Židek (2019-03-26):
- Resolves: rhbz#1690759 - RHEL STIG pointing sssd Packaging issue [rhel-7.6.z]
                         - Part 2.
libsss_certmap-1.16.2-13.el7_6.8.x86_64 [172 KiB] Changelog by Michal Židek (2019-03-26):
- Resolves: rhbz#1690759 - RHEL STIG pointing sssd Packaging issue [rhel-7.6.z]
                         - Part 2.
libsss_certmap-1.16.2-13.el7_6.5.i686 [171 KiB] Changelog by Michal Židek (2018-12-18):
- Resolves: rhbz#1659507 - SSSD's LDAP authentication provider does not work
                           if ID provider is authenticated with GSSAPI [rhel-7.6.z]
libsss_certmap-1.16.2-13.el7_6.5.x86_64 [171 KiB] Changelog by Michal Židek (2018-12-18):
- Resolves: rhbz#1659507 - SSSD's LDAP authentication provider does not work
                           if ID provider is authenticated with GSSAPI [rhel-7.6.z]
libsss_certmap-1.16.2-13.el7.x86_64 [170 KiB] Changelog by Jakub Hrozek (2018-09-05):
- Resolves: rhbz#1593756 - sssd needs to require a newer version of
                           libtalloc and libtevent to avoid an issue
                           in GPO processing
libsss_certmap-1.16.2-13.el7.i686 [170 KiB] Changelog by Jakub Hrozek (2018-09-05):
- Resolves: rhbz#1593756 - sssd needs to require a newer version of
                           libtalloc and libtevent to avoid an issue
                           in GPO processing
libsss_certmap-1.16.0-19.el7_5.8.x86_64 [166 KiB] Changelog by Jakub Hrozek (2018-07-26):
- Resolves: rhbz#1601360 - SSSD bails out saving desktop profiles in case an invalid profile is found [rhel-7.5.z]
libsss_certmap-1.16.0-19.el7_5.8.i686 [166 KiB] Changelog by Jakub Hrozek (2018-07-26):
- Resolves: rhbz#1601360 - SSSD bails out saving desktop profiles in case an invalid profile is found [rhel-7.5.z]
libsss_certmap-1.16.0-19.el7_5.5.i686 [165 KiB] Changelog by Fabiano Fidêncio (2018-05-31):
- Resolves: rhbz#1583746 - The SSSD IPA provider allocates information about external groups on a long lived memory context, causing memory growth of the sssd_be process [rhel-7.5.z]
libsss_certmap-1.16.0-19.el7_5.5.x86_64 [166 KiB] Changelog by Fabiano Fidêncio (2018-05-31):
- Resolves: rhbz#1583746 - The SSSD IPA provider allocates information about external groups on a long lived memory context, causing memory growth of the sssd_be process [rhel-7.5.z]
libsss_certmap-1.16.0-19.el7.x86_64 [165 KiB] Changelog by Fabiano Fidêncio (2018-02-21):
- Related: rhbzrhbz#1544943 - sssd goes offline when renewing expired ticket
libsss_certmap-1.16.0-19.el7.i686 [164 KiB] Changelog by Fabiano Fidêncio (2018-02-21):
- Related: rhbzrhbz#1544943 - sssd goes offline when renewing expired ticket
libsss_certmap-1.15.2-50.el7_4.11.i686 [150 KiB] Changelog by Fabiano Fidêncio (2018-02-13):
- Resolves: rhbz#1516700 - SELINUX: Use getseuserbyname to get IPA
                           seuser [rhel-7.4.z]
libsss_certmap-1.15.2-50.el7_4.11.x86_64 [151 KiB] Changelog by Fabiano Fidêncio (2018-02-13):
- Resolves: rhbz#1516700 - SELINUX: Use getseuserbyname to get IPA
                           seuser [rhel-7.4.z]
libsss_certmap-1.15.2-50.el7_4.8.i686 [149 KiB] Changelog by Fabiano Fidêncio (2017-11-03):
- Resolves: rhbz#1508972 - Accessing IdM kerberos ticket fails while id
                           mapping is applied [rhel-7.4.z]
- Resolves: rhbz#1509177 - Race condition between refreshing the cr_domain
                           list and a request that is using the list can
                           cause a segfault is sssd_nss [rhel-7.4.z]
libsss_certmap-1.15.2-50.el7_4.8.x86_64 [150 KiB] Changelog by Fabiano Fidêncio (2017-11-03):
- Resolves: rhbz#1508972 - Accessing IdM kerberos ticket fails while id
                           mapping is applied [rhel-7.4.z]
- Resolves: rhbz#1509177 - Race condition between refreshing the cr_domain
                           list and a request that is using the list can
                           cause a segfault is sssd_nss [rhel-7.4.z]
libsss_certmap-1.15.2-50.el7_4.6.i686 [149 KiB] Changelog by Fabiano Fidêncio (2017-09-27):
- Add a patch that was missed in 1.15.2-50.4
- Related: rhbz#1489290 - samba shares with sssd authentication broken
                          on 7.4 [rhel-7.4.z]
libsss_certmap-1.15.2-50.el7_4.6.x86_64 [149 KiB] Changelog by Fabiano Fidêncio (2017-09-27):
- Add a patch that was missed in 1.15.2-50.4
- Related: rhbz#1489290 - samba shares with sssd authentication broken
                          on 7.4 [rhel-7.4.z]
libsss_certmap-1.15.2-50.el7_4.2.i686 [148 KiB] Changelog by Jakub Hrozek (2017-08-06):
- Resolves: rhbz#1478252 - Querying the AD domain for external domain's
                           ID can mark the AD domain offline [rhel-7.4.z]
libsss_certmap-1.15.2-50.el7_4.2.x86_64 [149 KiB] Changelog by Jakub Hrozek (2017-08-06):
- Resolves: rhbz#1478252 - Querying the AD domain for external domain's
                           ID can mark the AD domain offline [rhel-7.4.z]
libsss_certmap-1.15.2-50.el7.x86_64 [148 KiB] Changelog by Jakub Hrozek (2017-06-21):
- Resolves: rhbz#1457926 - Wrong search base used when SSSD is directly
                           connected to AD child domain
libsss_certmap-1.15.2-50.el7.i686 [148 KiB] Changelog by Jakub Hrozek (2017-06-21):
- Resolves: rhbz#1457926 - Wrong search base used when SSSD is directly
                           connected to AD child domain

Listing created by repoview