sssd-1.16.5-10.el7_9.16.x86_64
[150 KiB] |
Changelog
by Eduardo Lima (Etrunko) (2023-11-16):
- Resolves: RHEL-16003 - sssd : AD user login problem when modify ldap_user_name= name and restricted by GPO Policy [rhel-7.9.z]
|
sssd-1.16.5-10.el7_9.15.x86_64
[150 KiB] |
Changelog
by Alexey Tikhonov (2023-01-06):
- Resolves: rhbz#2149703 - smartcards: special characters must be escaped when building search filter [rhel-7.9.z]
- Resolves: rhbz#2149902 - EMBARGOED CVE-2022-4254 sssd: libsss_certmap fails to sanitise certificate data used in LDAP filters [rhel-7.9.z]
|
sssd-1.16.5-10.el7_9.14.x86_64
[150 KiB] |
Changelog
by Alexey Tikhonov (2022-11-15):
- Resolves: rhbz#2097014 - SSSD -> sssd_be and sssd_ifp coredump [rhel-7.9.z]
- Resolves: rhbz#2107380 - sssd timezone issues sudonotafter [rhel-7.9.z]
- Resolves: rhbz#2116207 - SSSD starting offline after reboot [rhel-7.9.z]
|
sssd-1.16.5-10.el7_9.13.x86_64
[149 KiB] |
Changelog
by Alexey Tikhonov (2022-06-10):
- Resolves: rhbz#2079441 - SSSD update prompts for smartcard pin twice - After update to 7.9 [rhel-7.9.z]
- Resolves: rhbz#2073352 - Use right sdap_domain in ad_domain_info_send [rhel-7.9.z]
|
sssd-1.16.5-10.el7_9.12.x86_64
[149 KiB] |
Changelog
by Alexey Tikhonov (2022-01-31):
- Resolves: rhbz#2006382 - IPA Intermittence fetching groups
- Resolves: rhbz#2006866 - sssd_be segfault due to empty forest root name
- Resolves: rhbz#2031729 - IPA clients fail to resolve override group names.
- Resolves: rhbz#2032867 - AD Domain in the AD Forest Missing after sssd latest update
|
sssd-1.16.5-10.el7_9.11.x86_64
[149 KiB] |
Changelog
by Alexey Tikhonov (2021-11-02):
- Resolves: rhbz#1968316 - SSSD: User authentication failing after server reboot.
- Resolves: rhbz#2000238 - disabled root ad domain causes subdomains to be marked offline
- Resolves: rhbz#1984591 - After sssd update to 1.16.5-10.el7_9.8.x86_64 the customer is facing slow connection/authentication (due to discovery of unexpected AD domains)
|
sssd-1.16.5-10.el7_9.10.x86_64
[148 KiB] |
Changelog
by Alexey Tikhonov (2021-08-11):
- Resolves: rhbz#1973796 - SSSD is NOT able to contact the Global Catalog when local site is down
|
sssd-1.16.5-10.el7_9.8.x86_64
[148 KiB] |
Changelog
by Alexey Tikhonov (2021-04-26):
- Resolves: rhbz#1910131 - sssd throwing error " Unable to parse name test' [1432158283]: The internal name format cannot be parsed" at debug_level 2 [rhel-7.9.z]
- Resolves: rhbz#1922244 - First smart refresh query contains modifyTimestamp even if the modifyTimestamp is 0. [rhel-7.9.z]
- Resolves: rhbz#1935685 - SSSD not detecting subdomain from AD forest (7.9z)
- Resolves: rhbz#1945552 - IPA missing secondary IPA Posix groups in latest sssd 1.16.5-10.el7_9.7 [rhel-7.9.z]
- Resolves: rhbz#1839972 - Authentication handshake (ldap_install_tls()) fails due to underlying openssl operation failing with EINTR [rhel-7.9.z]
|
sssd-1.16.5-10.el7_9.7.x86_64
[147 KiB] |
Changelog
by Alexey Tikhonov (2020-12-10):
- Resolves: rhbz#1875514 - filter_groups option partially filters the group from 'id' output of the user because gidNumber still appears in 'id' output [rhel-7.9.z]
- Resolves: rhbz#1772513 - SSSD is generating lot of LDAP queries in a very large environment [rhel-7.9.z]
- Resolves: rhbz#1736845 - [RFE] Backporting certificate matching rules for files, AD and LDAP provider [rhel-7.9.z]
|
sssd-1.16.5-10.el7_9.6.x86_64
[147 KiB] |
Changelog
by Alexey Tikhonov (2020-11-25):
- Resolves: rhbz#1899593 - sssd_be segfaults at be_refresh_get_values_ex() due to NULL ptrs in results of sysdb_search_with_ts_attr() [rhel-7.9.z]
- Resolves: rhbz#1888409 - sssd component logging is now too generic in syslog/journal [rhel-7.9.z]
- Resolves: rhbz#1852659 - sssd service is starting even though it is disabled state [rhel-7.9.z]
- Resolves: rhbz#1893443 - User lookups over the InfoPipe responder fail intermittently [rhel-7.9.z]
- Resolves: rhbz#1871288 - krb5_child denies ssh users when pki device detected [rhel-7.9.z]
- Resolves: rhbz#1853703 - Unexpected behavior and issue with filter_users/filter_groups option [rhel-7.9.z]
- Resolves: rhbz#1756240 - [RfE] Implement a new sssd.conf option to disable the filter for AD domain local groups from trusted domains [rhel-7.9.z]
- Resolves: rhbz#1851112 - LDAP bind can fail due to unconfigurable DNS server timeouts that inhibit SSSD failover [rhel-7.9.z]
|
sssd-1.16.5-10.el7_9.5.x86_64
[146 KiB] |
Changelog
by Alexey Tikhonov (2020-08-28):
- Resolves: rhbz#1859554 - Secondary LDAP group go missing from 'id' command on RHEL 7.8 with sssd-1.16.2-37.el7_8.1 [rhel-7.9.z]
(Previous attempt to fix this issue was incomplete (again))
- just bumping the version to build for proper target
|
sssd-1.16.5-10.el7.x86_64
[144 KiB] |
Changelog
by Alexey Tikhonov (2020-06-05):
- Resolves: rhbz#1804005 - sssd doesn't follow the link order of AD Group Policy Management
- Resolves: rhbz#1773409 - sssd is failing to discover other subdomains in the forest if LDAP entries do not contain AD forest root information
- Resolves: rhbz#1551077 - GDM failure loop when no user mapped for smart card
- Resolves: rhbz#1507683 - GDM password prompt when cert mapped to multiple users and promptusername is False
|
sssd-1.16.4-37.el7_8.4.x86_64
[142 KiB] |
Changelog
by Alexey Tikhonov (2020-06-12):
- Resolves: rhbz#1842861 - sssd boots offline if symlink for /etc/resolv.conf is broken/missing [rhel-7.8.z]
- Resolves: rhbz#1845009 - [Bug] Reduce logging about flat names [rhel-7.8.z]
|
sssd-1.16.4-37.el7_8.3.x86_64
[142 KiB] |
Changelog
by Alexey Tikhonov (2020-03-27):
- Resolves: rhbz#1817380 - Removing an IPA sub-group should NOT remove the members
from indirect parent that also belong to other subgroups
[rhel-7.8.z]
|
sssd-1.16.4-37.el7.x86_64
[141 KiB] |
Changelog
by Michal Židek (2020-01-15):
- Resolves: rhbz#1784620 - Force LDAPS over 636 with AD Access Provider
- just bumping the version to fix generated dates in man pages
|
sssd-1.16.4-21.el7_7.3.x86_64
[139 KiB] |
Changelog
by Alexey Tikhonov (2020-03-01):
- Resolves: rhbz#1807934 - sssd failover leads to delayed and failed logins
[rhel-7.7.z]
|
sssd-1.16.4-21.el7_7.1.x86_64
[138 KiB] |
Changelog
by Michal Židek (2019-10-09):
- Resolves: rhbz#1758566 - negative cache does not use values from 'filter_users'
config option for known domains [rhel-7.7.z]
|
sssd-1.16.4-21.el7.x86_64
[138 KiB] |
Changelog
by Michal Židek (2019-06-07):
- Resolves: rhbz#1714952 - [sssd] RHEL 7.7 Tier 0 Localization
- Rebuild japanese gmo file explicitly
|
sssd-1.16.2-13.el7_6.8.x86_64
[135 KiB] |
Changelog
by Michal Židek (2019-03-26):
- Resolves: rhbz#1690759 - RHEL STIG pointing sssd Packaging issue [rhel-7.6.z]
- Part 2.
|
sssd-1.16.2-13.el7_6.5.x86_64
[135 KiB] |
Changelog
by Michal Židek (2018-12-18):
- Resolves: rhbz#1659507 - SSSD's LDAP authentication provider does not work
if ID provider is authenticated with GSSAPI [rhel-7.6.z]
|
sssd-1.16.2-13.el7.x86_64
[134 KiB] |
Changelog
by Jakub Hrozek (2018-09-05):
- Resolves: rhbz#1593756 - sssd needs to require a newer version of
libtalloc and libtevent to avoid an issue
in GPO processing
|
sssd-1.16.0-19.el7_5.8.x86_64
[129 KiB] |
Changelog
by Jakub Hrozek (2018-07-26):
- Resolves: rhbz#1601360 - SSSD bails out saving desktop profiles in case an invalid profile is found [rhel-7.5.z]
|
sssd-1.16.0-19.el7_5.5.x86_64
[129 KiB] |
Changelog
by Fabiano Fidêncio (2018-05-31):
- Resolves: rhbz#1583746 - The SSSD IPA provider allocates information about external groups on a long lived memory context, causing memory growth of the sssd_be process [rhel-7.5.z]
|
sssd-1.16.0-19.el7.x86_64
[128 KiB] |
Changelog
by Fabiano Fidêncio (2018-02-21):
- Related: rhbzrhbz#1544943 - sssd goes offline when renewing expired ticket
|
sssd-1.15.2-50.el7_4.11.x86_64
[120 KiB] |
Changelog
by Fabiano Fidêncio (2018-02-13):
- Resolves: rhbz#1516700 - SELINUX: Use getseuserbyname to get IPA
seuser [rhel-7.4.z]
|
sssd-1.15.2-50.el7_4.8.x86_64
[119 KiB] |
Changelog
by Fabiano Fidêncio (2017-11-03):
- Resolves: rhbz#1508972 - Accessing IdM kerberos ticket fails while id
mapping is applied [rhel-7.4.z]
- Resolves: rhbz#1509177 - Race condition between refreshing the cr_domain
list and a request that is using the list can
cause a segfault is sssd_nss [rhel-7.4.z]
|
sssd-1.15.2-50.el7_4.6.x86_64
[119 KiB] |
Changelog
by Fabiano Fidêncio (2017-09-27):
- Add a patch that was missed in 1.15.2-50.4
- Related: rhbz#1489290 - samba shares with sssd authentication broken
on 7.4 [rhel-7.4.z]
|
sssd-1.15.2-50.el7_4.2.x86_64
[118 KiB] |
Changelog
by Jakub Hrozek (2017-08-06):
- Resolves: rhbz#1478252 - Querying the AD domain for external domain's
ID can mark the AD domain offline [rhel-7.4.z]
|
sssd-1.15.2-50.el7.x86_64
[118 KiB] |
Changelog
by Jakub Hrozek (2017-06-21):
- Resolves: rhbz#1457926 - Wrong search base used when SSSD is directly
connected to AD child domain
|
sssd-1.14.0-43.el7_3.18.x86_64
[108 KiB] |
Changelog
by Jakub Hrozek (2017-05-26):
- Resolves: rhbz#1456013 - sssd intermittently failing to resolve groups
for an AD user in IPA-AD trust environment.
|
sssd-1.14.0-43.el7_3.14.x86_64
[107 KiB] |
Changelog
by Jakub Hrozek (2017-02-15):
- Resolves: rhbz#1422183 - Fails to accept any sudo rules if there are
two user entries in an ldap role with the same
sudo user.
|
sssd-1.14.0-43.el7_3.11.x86_64
[106 KiB] |
Changelog
by Jakub Hrozek (2016-12-13):
- Resolves: rhbz#1404340 - Use-after free in resolver in case the fd is
writeable and readable at the same time
|
sssd-1.14.0-43.el7_3.4.x86_64
[105 KiB] |
Changelog
by Jakub Hrozek (2016-11-14):
- Revert the fix for ignoring sudoUser case as it breaks processing
of rules that completely lack a sudoUser attribute
- Related: rhbz#1392946 - sudo: ignore case on case insensitive domains
|
sssd-1.14.0-43.el7.x86_64
[104 KiB] |
Changelog
by Jakub Hrozek (2016-09-20):
- Resolves: rhbz#1376831 - sssd-common is missing dependency on sssd-sudo
|
sssd-1.13.0-40.el7_2.12.x86_64
[92 KiB] |
Changelog
by Jakub Hrozek (2016-07-14):
- Resolves: rhbz#1356433 - ldap_group_external_member is no set for the
IPA provider
|
sssd-1.13.0-40.el7_2.9.x86_64
[92 KiB] |
Changelog
by Jakub Hrozek (2016-05-24):
- Resolves: rhbz#1339509 - sssd tries to resolve global catalog servers
from AD forest sub-domains in AD-IPA trust setup
|
sssd-1.13.0-40.el7_2.4.x86_64
[91 KiB] |
Changelog
by Jakub Hrozek (2016-04-18):
- Resolves: rhbz#1324442 - sssd be memory leak in sssd's memberof plugin
- More patches from upstream related to the memory leak
|
sssd-1.13.0-40.el7_2.2.x86_64
[91 KiB] |
Changelog
by Jakub Hrozek (2016-02-24):
- Resolves: rhbz#1311569 - [RFE] IPA: resolve external group memberships
of IPA groups during getgrnam and getgrgid
|
sssd-1.13.0-40.el7_2.1.x86_64
[90 KiB] |
Changelog
by Jakub Hrozek (2015-11-24):
- Resolves: rhbz#1284814 - sssd: [sysdb_add_user] (0x0400): Error: 17
(File exists)
|
sssd-1.13.0-40.el7.x86_64
[90 KiB] |
Changelog
by Jakub Hrozek (2015-10-14):
- Resolves: rhbz#1270827 - local overrides: don't contact server with
overridden name/id
|
sssd-1.12.2-58.el7_1.18.x86_64
[80 KiB] |
Changelog
by Jakub Hrozek (2015-10-02):
- Resolves: rhbz#1268205 - SSSD intermittently fails to resolve external
IPA group membership.
|
sssd-1.12.2-58.el7_1.17.x86_64
[80 KiB] |
Changelog
by Jakub Hrozek (2015-09-03):
- Actually apply the patch for rhbz#1255442
- Resolves: rhbz#1255442 - getgrgid for user's UID on a trust client
prevents getpw*
|
sssd-1.12.2-58.el7_1.14.x86_64
[80 KiB] |
Changelog
by Jakub Hrozek (2015-07-20):
- Resolves: rhbz#1244761 - Relax the libldb requirements to unblock
RH Storage
|
sssd-1.12.2-58.el7_1.6.x86_64
[79 KiB] |
Changelog
by Jakub Hrozek (2015-03-19):
- Initialize variable in the views code in one success and one failure path
- Resolves: rhbz#1203365 - sssd_be segfault on IPA(when auth with AD
trusted domain) client at
src/providers/ipa/ipa_s2n_exop.c:1605
|