Skip to content

CentOS 7 - Updates for x86_64: applications/system: sssd

sssd - System Security Services Daemon

Website: https://pagure.io/SSSD/sssd/
License: GPLv3+
Vendor: CentOS
Description:
Provides a set of daemons to manage access to remote directories and
authentication mechanisms. It provides an NSS and PAM interface toward
the system and a pluggable backend system to connect to multiple different
account sources. It is also the basis to provide client auditing and policy
services for projects like FreeIPA.

The sssd subpackage is a meta-package that contains the deamon as well as all
the existing back ends.

Packages

sssd-1.16.5-10.el7_9.8.x86_64 [148 KiB] Changelog by Alexey Tikhonov (2021-04-26):
- Resolves: rhbz#1910131 - sssd throwing error " Unable to parse name test' [1432158283]: The internal name format cannot be parsed" at debug_level 2 [rhel-7.9.z]
- Resolves: rhbz#1922244 - First smart refresh query contains modifyTimestamp even if the modifyTimestamp is 0. [rhel-7.9.z]
- Resolves: rhbz#1935685 - SSSD not detecting subdomain from AD forest (7.9z)
- Resolves: rhbz#1945552 - IPA missing secondary IPA Posix groups in latest sssd 1.16.5-10.el7_9.7 [rhel-7.9.z]
- Resolves: rhbz#1839972 - Authentication handshake (ldap_install_tls()) fails due to underlying openssl operation failing with EINTR [rhel-7.9.z]
sssd-1.16.5-10.el7_9.7.x86_64 [147 KiB] Changelog by Alexey Tikhonov (2020-12-10):
- Resolves: rhbz#1875514 - filter_groups option partially filters the group from 'id' output of the user because gidNumber still appears in 'id' output [rhel-7.9.z]
- Resolves: rhbz#1772513 - SSSD is generating lot of LDAP queries in a very large environment [rhel-7.9.z]
- Resolves: rhbz#1736845 - [RFE] Backporting certificate matching rules for files, AD and LDAP provider [rhel-7.9.z]
sssd-1.16.5-10.el7_9.6.x86_64 [147 KiB] Changelog by Alexey Tikhonov (2020-11-25):
- Resolves: rhbz#1899593 - sssd_be segfaults at be_refresh_get_values_ex() due to NULL ptrs in results of sysdb_search_with_ts_attr() [rhel-7.9.z]
- Resolves: rhbz#1888409 - sssd component logging is now too generic in syslog/journal [rhel-7.9.z]
- Resolves: rhbz#1852659 - sssd service is starting even though it is disabled state [rhel-7.9.z]
- Resolves: rhbz#1893443 - User lookups over the InfoPipe responder fail intermittently [rhel-7.9.z]
- Resolves: rhbz#1871288 - krb5_child denies ssh users when pki device detected [rhel-7.9.z]
- Resolves: rhbz#1853703 - Unexpected behavior and issue with filter_users/filter_groups option [rhel-7.9.z]
- Resolves: rhbz#1756240 - [RfE] Implement a new sssd.conf option to disable the filter for AD domain local groups from trusted domains [rhel-7.9.z]
- Resolves: rhbz#1851112 - LDAP bind can fail due to unconfigurable DNS server timeouts that inhibit SSSD failover [rhel-7.9.z]
sssd-1.16.5-10.el7_9.5.x86_64 [146 KiB] Changelog by Alexey Tikhonov (2020-08-28):
- Resolves: rhbz#1859554 - Secondary LDAP group go missing from 'id' command on RHEL 7.8 with sssd-1.16.2-37.el7_8.1 [rhel-7.9.z]
  (Previous attempt to fix this issue was incomplete (again))
- just bumping the version to build for proper target
sssd-1.16.5-10.el7.x86_64 [144 KiB] Changelog by Alexey Tikhonov (2020-06-05):
- Resolves: rhbz#1804005 - sssd doesn't follow the link order of AD Group Policy Management
- Resolves: rhbz#1773409 - sssd is failing to discover other subdomains in the forest if LDAP entries do not contain AD forest root information
- Resolves: rhbz#1551077 - GDM failure loop when no user mapped for smart card
- Resolves: rhbz#1507683 - GDM password prompt when cert mapped to multiple users and promptusername is False
sssd-1.16.4-37.el7_8.4.x86_64 [142 KiB] Changelog by Alexey Tikhonov (2020-06-12):
- Resolves: rhbz#1842861 - sssd boots offline if symlink for /etc/resolv.conf is broken/missing [rhel-7.8.z]
- Resolves: rhbz#1845009 - [Bug] Reduce logging about flat names [rhel-7.8.z]
sssd-1.16.4-37.el7_8.3.x86_64 [142 KiB] Changelog by Alexey Tikhonov (2020-03-27):
- Resolves: rhbz#1817380 - Removing an IPA sub-group should NOT remove the members
                           from indirect parent that also belong to other subgroups
                           [rhel-7.8.z]
sssd-1.16.4-37.el7.x86_64 [141 KiB] Changelog by Michal Židek (2020-01-15):
- Resolves: rhbz#1784620 - Force LDAPS over 636 with AD Access Provider
- just bumping the version to fix generated dates in man pages
sssd-1.16.4-21.el7_7.3.x86_64 [139 KiB] Changelog by Alexey Tikhonov (2020-03-01):
- Resolves: rhbz#1807934 - sssd failover leads to delayed and failed logins
                           [rhel-7.7.z]
sssd-1.16.4-21.el7_7.1.x86_64 [138 KiB] Changelog by Michal Židek (2019-10-09):
- Resolves: rhbz#1758566 - negative cache does not use values from 'filter_users'
                           config option for known domains [rhel-7.7.z]
sssd-1.16.4-21.el7.x86_64 [138 KiB] Changelog by Michal Židek (2019-06-07):
- Resolves: rhbz#1714952 - [sssd] RHEL 7.7 Tier 0 Localization
- Rebuild japanese gmo file explicitly
sssd-1.16.2-13.el7_6.8.x86_64 [135 KiB] Changelog by Michal Židek (2019-03-26):
- Resolves: rhbz#1690759 - RHEL STIG pointing sssd Packaging issue [rhel-7.6.z]
                         - Part 2.
sssd-1.16.2-13.el7_6.5.x86_64 [135 KiB] Changelog by Michal Židek (2018-12-18):
- Resolves: rhbz#1659507 - SSSD's LDAP authentication provider does not work
                           if ID provider is authenticated with GSSAPI [rhel-7.6.z]
sssd-1.16.2-13.el7.x86_64 [134 KiB] Changelog by Jakub Hrozek (2018-09-05):
- Resolves: rhbz#1593756 - sssd needs to require a newer version of
                           libtalloc and libtevent to avoid an issue
                           in GPO processing
sssd-1.16.0-19.el7_5.8.x86_64 [129 KiB] Changelog by Jakub Hrozek (2018-07-26):
- Resolves: rhbz#1601360 - SSSD bails out saving desktop profiles in case an invalid profile is found [rhel-7.5.z]
sssd-1.16.0-19.el7_5.5.x86_64 [129 KiB] Changelog by Fabiano Fidêncio (2018-05-31):
- Resolves: rhbz#1583746 - The SSSD IPA provider allocates information about external groups on a long lived memory context, causing memory growth of the sssd_be process [rhel-7.5.z]
sssd-1.16.0-19.el7.x86_64 [128 KiB] Changelog by Fabiano Fidêncio (2018-02-21):
- Related: rhbzrhbz#1544943 - sssd goes offline when renewing expired ticket
sssd-1.15.2-50.el7_4.11.x86_64 [120 KiB] Changelog by Fabiano Fidêncio (2018-02-13):
- Resolves: rhbz#1516700 - SELINUX: Use getseuserbyname to get IPA
                           seuser [rhel-7.4.z]
sssd-1.15.2-50.el7_4.8.x86_64 [119 KiB] Changelog by Fabiano Fidêncio (2017-11-03):
- Resolves: rhbz#1508972 - Accessing IdM kerberos ticket fails while id
                           mapping is applied [rhel-7.4.z]
- Resolves: rhbz#1509177 - Race condition between refreshing the cr_domain
                           list and a request that is using the list can
                           cause a segfault is sssd_nss [rhel-7.4.z]
sssd-1.15.2-50.el7_4.6.x86_64 [119 KiB] Changelog by Fabiano Fidêncio (2017-09-27):
- Add a patch that was missed in 1.15.2-50.4
- Related: rhbz#1489290 - samba shares with sssd authentication broken
                          on 7.4 [rhel-7.4.z]
sssd-1.15.2-50.el7_4.2.x86_64 [118 KiB] Changelog by Jakub Hrozek (2017-08-06):
- Resolves: rhbz#1478252 - Querying the AD domain for external domain's
                           ID can mark the AD domain offline [rhel-7.4.z]
sssd-1.15.2-50.el7.x86_64 [118 KiB] Changelog by Jakub Hrozek (2017-06-21):
- Resolves: rhbz#1457926 - Wrong search base used when SSSD is directly
                           connected to AD child domain
sssd-1.14.0-43.el7_3.18.x86_64 [108 KiB] Changelog by Jakub Hrozek (2017-05-26):
- Resolves: rhbz#1456013 - sssd intermittently failing to resolve groups
                           for an AD user in IPA-AD trust environment.
sssd-1.14.0-43.el7_3.14.x86_64 [107 KiB] Changelog by Jakub Hrozek (2017-02-15):
- Resolves: rhbz#1422183 - Fails to accept any sudo rules if there are
                           two user entries in an ldap role with the same
                           sudo user.
sssd-1.14.0-43.el7_3.11.x86_64 [106 KiB] Changelog by Jakub Hrozek (2016-12-13):
- Resolves: rhbz#1404340 - Use-after free in resolver in case the fd is
                           writeable and readable at the same time
sssd-1.14.0-43.el7_3.4.x86_64 [105 KiB] Changelog by Jakub Hrozek (2016-11-14):
- Revert the fix for ignoring sudoUser case as it breaks processing
  of rules that completely lack a sudoUser attribute
- Related: rhbz#1392946 - sudo: ignore case on case insensitive domains
sssd-1.14.0-43.el7.x86_64 [104 KiB] Changelog by Jakub Hrozek (2016-09-20):
- Resolves: rhbz#1376831 - sssd-common is missing dependency on sssd-sudo
sssd-1.13.0-40.el7_2.12.x86_64 [92 KiB] Changelog by Jakub Hrozek (2016-07-14):
- Resolves: rhbz#1356433 - ldap_group_external_member is no set for the
                           IPA provider
sssd-1.13.0-40.el7_2.9.x86_64 [92 KiB] Changelog by Jakub Hrozek (2016-05-24):
- Resolves: rhbz#1339509 - sssd tries to resolve global catalog servers
                           from AD forest sub-domains in AD-IPA trust setup
sssd-1.13.0-40.el7_2.4.x86_64 [91 KiB] Changelog by Jakub Hrozek (2016-04-18):
- Resolves: rhbz#1324442 - sssd be memory leak in sssd's memberof plugin
- More patches from upstream related to the memory leak
sssd-1.13.0-40.el7_2.2.x86_64 [91 KiB] Changelog by Jakub Hrozek (2016-02-24):
- Resolves: rhbz#1311569 - [RFE] IPA: resolve external group memberships
                           of IPA groups during getgrnam and getgrgid
sssd-1.13.0-40.el7_2.1.x86_64 [90 KiB] Changelog by Jakub Hrozek (2015-11-24):
- Resolves: rhbz#1284814  - sssd: [sysdb_add_user] (0x0400): Error: 17
                           (File exists)
sssd-1.13.0-40.el7.x86_64 [90 KiB] Changelog by Jakub Hrozek (2015-10-14):
- Resolves: rhbz#1270827 - local overrides: don't contact server with
                           overridden name/id
sssd-1.12.2-58.el7_1.18.x86_64 [80 KiB] Changelog by Jakub Hrozek (2015-10-02):
- Resolves: rhbz#1268205 - SSSD intermittently fails to resolve external
                           IPA group membership.
sssd-1.12.2-58.el7_1.17.x86_64 [80 KiB] Changelog by Jakub Hrozek (2015-09-03):
- Actually apply the patch for rhbz#1255442
- Resolves: rhbz#1255442 - getgrgid for user's UID on a trust client
                           prevents getpw*
sssd-1.12.2-58.el7_1.14.x86_64 [80 KiB] Changelog by Jakub Hrozek (2015-07-20):
- Resolves: rhbz#1244761 - Relax the libldb requirements to unblock
                           RH Storage
sssd-1.12.2-58.el7_1.6.x86_64 [79 KiB] Changelog by Jakub Hrozek (2015-03-19):
- Initialize variable in the views code in one success and one failure path
- Resolves: rhbz#1203365 - sssd_be segfault on IPA(when auth with AD
                           trusted domain) client at
                           src/providers/ipa/ipa_s2n_exop.c:1605

Listing created by repoview