0001-util-Move-semanage-related-functions-to-src-util.patch
0002-sss_semanage-Add-mlsrange-parameter-to-set_seuser.patch
0003-IPA-Use-set_seuser-instead-of-writing-selinux-login-.patch
0004-SSSD-Add-the-options-to-specify-a-UID-and-GID-to-run.patch
0005-SSSD-Chown-the-log-files.patch
0006-UTIL-Use-a-custom-PID_PATH-and-DB_PATH-when-unit-tes.patch
0007-TESTS-Unit-tests-can-use-confdb-without-using-sysdb.patch
0008-TESTS-Add-std-gnu99-to-cwrap-tests-CFLAGS.patch
0009-TESTS-Unit-tests-for-server_setup.patch
0010-RPM-Package-the-libsss_semanage.so-library.patch
0011-ipa-fix-issues-with-older-servers-not-supporting-vie.patch
0012-ipa-improve-error-reporting-for-extdom-LDAP-exop.patch
0013-BUILD-Fix-automake-warning.patch
0014-test_server-Fix-waiting-for-background-process.patch
0015-ipa_subdomains_handler_master_done-initialize-reply_.patch
0016-Fix-debug-messages-trailing.patch
0017-IPA-Handle-NULL-members-in-process_members.patch
0018-SPEC-Print-testsuite-log-for-failed-test.patch
0019-MAN-PAGE-modified-sssd-ldap.5.xml-for-sssd-ticket-24.patch
0020-NSS-Possibility-to-use-any-shells-in-allowed_shells.patch
0021-GPO-Terminate-request-on-error.patch
0022-pyhbac-pysss-fix-reference-leaks.patch
0023-UTIL-Add-a-function-to-convert-id_t-from-a-number-or.patch
0024-BUILD-Add-a-config-option-for-sssd-user-own-private-.patch
0025-RPM-Change-file-ownership-to-sssd.sssd.patch
0026-SSSD-Load-a-user-to-run-a-service-as-from-configurat.patch
0027-SBUS-Chown-the-sbus-socket-if-needed.patch
0028-SBUS-Allow-connections-from-other-UIDs.patch
0029-BE-Own-the-sbus-socket-as-the-SSSD-user.patch
0030-MONITOR-Allow-confdb-to-be-accessed-by-nonroot-user.patch
0031-SYSDB-Allow-calling-chown-on-the-sysdb-file-from-mon.patch
0032-NSS-Run-as-a-user-specified-by-monitor.patch
0033-responder_common-Create-fd-for-pipe-in-helper.patch
0034-TEST-Unit-test-for-create_pipe_fd.patch
0035-responders-Do-not-initialize-pipe-fd-if-already-pres.patch
0036-PAM-Create-pipe-file-descriptors-before-privileges-a.patch
0037-PAM-Run-pam-responder-as-nonroot.patch
0038-AUTOFS-Run-the-autofs-responder-as-the-SSSD-user.patch
0039-PAC-Run-the-pac-responder-as-the-SSSD-user.patch
0040-SUDO-Run-the-sudo-responder-as-the-SSSD-user.patch
0041-SSH-Run-the-ssh-responder-as-the-SSSD-user.patch
0042-SBUS-Fix-error-handling-after-closing-container.patch
0043-TESTS-Add-tests-for-the-views-related-option-maps.patch
0044-RESPONDERS-refactor-create_pipe_fd.patch
0045-RESPONDERS-Don-t-hard-code-umask-value-in-utility-fu.patch
0046-RESPONDERS-Set-default-value-for-umask.patch
0047-nss-group-enumeration-fix.patch
0048-nss-preserve-service-name-in-getsrv-call.patch
0049-sdap_print_server-use-getpeername-to-get-server-addr.patch
0050-IPA-Don-t-fail-the-request-when-BE-doesn-t-find-the-.patch
0051-memberof-check-for-empty-arrays-to-avoid-segfaults.patch
0052-CONFDB-Detect-fix-misconf-opt-refresh_expired_interv.patch
0053-NSS-disable-midpoint-refresh-for-netgroups.patch
0054-IPA-use-ipaUserGroup-object-class-for-groups.patch
0055-Add-add_strings_lists-utility-function.patch
0056-IPA-inherit-ldap_user_extra_attrs-to-AD-subdomains.patch
0057-Add-parse_attr_list_ex-helper-function.patch
0058-nss-parse-user_attributes-option.patch
0059-nss-return-user_attributes-in-origbyname-request.patch
0060-sysdb_get_user_attr_with_views-add-mandatory-overrid.patch
0061-sysdb_add_overrides_to_object-add-new-parameter-and-.patch
0062-Views-apply-user-SSH-public-key-override.patch
0063-Add-test-for-sysdb_add_overrides_to_object.patch
0064-Add-ssh-pubkey-to-origbyname-request.patch
0065-BUILD-Install-ldap_child-and-as-setuid-if-running-un.patch
0066-LDAP-Move-sss_krb5_verify_keytab_ex-to-ldap_child.patch
0067-LDAP-read-the-correct-data-type-from-ldap_child-s-in.patch
0068-LDAP-Drop-privileges-after-kinit-in-ldap_child.patch
0069-UTIL-Remove-code-duplication-of-struct-io.patch
0070-UTIL-Remove-more-code-duplication-setting-up-child-p.patch
0071-IPA-Move-setting-the-SELinux-context-to-a-child-proc.patch
0072-test_sysdb_views-Use-unique-directory-for-cache.patch
0073-selinux_child-Do-not-ignore-return-values.patch
0074-IPA-Store-right-username-to-selinux-child-context.patch
0075-PAM-Remove-authtok-from-PAM-stack-with-OTP.patch
0076-Revert-LDAP-Remove-unused-option-ldap_user_uuid.patch
0077-Revert-LDAP-Remove-unused-option-ldap_group_uuid.patch
0078-Fix-uuid-defaults.patch
0079-Revert-LDAP-Change-defaults-for-ldap_user-group_obje.patch
0080-LDAP-Disable-token-groups-by-default.patch
0081-proxy-Do-not-try-to-store-same-alias-twice.patch
0082-PROXY-Preserve-service-name-in-proxy-provider.patch
0083-BUILD-Install-krb5_child-as-suid-if-running-under-no.patch
0084-KRB5-Drop-privileges-in-the-child-not-the-back-end.patch
0085-KRB5-Move-ccache-related-functions-to-krb5_ccache.c.patch
0086-KRB5-Move-checking-for-illegal-RE-to-krb5_utils.c.patch
0087-KRB5-Move-all-ccache-operations-to-krb5_child.c.patch
0088-KRB5-Do-not-switch_creds-if-already-the-specified-us.patch
0089-BUILD-Use-separate-chown-to-make-changing-ownership-.patch
0090-BUILD-Make-chown-of-files-to-sssd-user-non-fatal.patch
0091-BUILD-Touch-files-in-DESTDIR.patch
0092-BE-Become-a-regular-user-after-initialization.patch
0093-NOUPSTREAM-Default-to-root-if-sssd-user-is-not-speci.patch
0094-MAN-page-edit-for-ldap_use_tokengroups.patch
0095-sysdb-add-sysdb_search_object_by_uuid.patch
0096-ipa-add-split_ipa_anchor.patch
0097-LDAP-add-support-for-lookups-by-UUID.patch
0098-LDAP-always-store-UUID-if-available.patch
0099-ipa-add-get_be_acct_req_for_uuid.patch
0100-IPA-make-get_object_from_cache-public.patch
0101-IPA-check-overrrides-for-IPA-users-as-well.patch
0102-Enable-views-for-all-domains.patch
0103-MAN-Update-case_sensitive-Preserving-in-man-pages.patch
0104-Man-debug_timestamps-and-debug_microseconds.patch
0105-sss_client-Extract-destroying-of-mmap-cache-to-funct.patch
0106-sss_client-Fix-race-condition-in-memory-cache.patch
0107-IPA-Handle-IPA-groups-returned-from-extop-plugin.patch
0108-Fix-KRB5_CONF_PATH.patch
0109-AD-IPA-add-krb5_confd_path-configuration-option.patch
0110-test-Wrong-parameter-type-in-sss_parse_name_check.patch
0111-util-Special-case-PCRE_ERROR_NOMATCH-in-sss_parse_na.patch
0112-util-sss_get_domain_name-regex-mismatch-not-fatal.patch
0113-sysdb-add-sysdb_delete_view_tree.patch
0114-sysdb-add-sysdb_invalidate_overrides.patch
0115-views-allow-view-name-change-at-startup.patch
0116-PAM-Check-for-trusted-domain-before-sending-the-requ.patch
0117-PAM-Move-is_uid_trusted-from-pam_ctx-to-preq.patch
0118-krb5-make-krb5-provider-view-aware.patch
0119-IPA-only-update-view-data-if-it-really-changed.patch
0120-krb5-do-not-fail-if-checking-the-old-ccache-failed.patch
0121-test-avoid-leaks-in-leak-tests.patch
0122-krb5-add-copy_ccache_into_memory.patch
0123-krb5-add-copy_keytab_into_memory.patch
0124-ldap_child-copy-keytab-into-memory-to-drop-privilege.patch
0125-krb5_child-become-user-earlier.patch
0126-TESTS-Basic-child-tests.patch
0127-Add-extra_args-to-exec_child.patch
0128-KRB5-Create-the-fast-ccache-in-a-child-process.patch
0129-KRB5-Relax-DEBUG-message.patch
0130-IPA-Do-not-append-domain-name-to-fq-name.patch
0131-TESTS-Build-test_child-even-without-cmocka.patch
0132-sss_client-Work-around-glibc-bug.patch
0133-Skip-CHAUTHTOK_PRELIM-when-using-OTPs.patch
0134-PAM-Domain-names-are-case-insensitive.patch
0135-PAM-Missing-argument-to-domains-should-fail-auth.patch
0136-MAN-Misspelled-username-in-pam_trusted_users-is-not-.patch
0137-RESPONDER-Log-failures-to-resolve-user-names-in-csv_.patch
0138-KRB5-Check-FAST-kinit-errors-using-get_tgt_times.patch
0139-MAN-Clarify-ad_gpo_map-options.patch
0140-krb5_child-Initialize-REALM-earlier.patch
0141-TESTS-sysdb_delete_by_sid-test-return-value.patch
0142-NSS-nss_cmd_getbysid_search-return-ENOENT.patch
0143-SYSDB-sysdb_search_object_by_sid-returns-ENOENT.patch
0144-handle-KRB5KRB_ERR_GENERIC-as-unspecific-error.patch
0145-IPA-verify-group-memberships-of-trusted-domain-users.patch
0146-IPA-properly-handle-groups-from-different-domains.patch
0147-LDAP-retain-external-members.patch
0148-IPA-do-not-try-to-add-override-gid-twice.patch
0149-IPA-handle-GID-overrides-for-MPG-domains-on-clients.patch
0150-simple-access-provider-non-existing-object.patch
0151-libwbclient-initialize-some-return-values.patch
0152-GPO-Ignore-ENOENT-result-from-sysdb_gpo_get_gpo_resu.patch
0153-GPO-Set-libsmb-debugging-to-stderr.patch
0154-UTIL-Allow-dup-ing-child-pipe-to-a-different-FD.patch
0155-GPO-Don-t-use-stdout-for-output-in-gpo_child.patch
0156-GPO-Extract-server-hostname-after-connecting.patch
0157-IPA-add-get_be_acct_req_for_user_name.patch
0158-IPA-resolve-ghost-members-if-a-non-default-view-is-a.patch
0159-sysdb-fix-group-members-with-overridden-names.patch
0160-IPA-ipa_resolve_user_list_send-take-care-of-override.patch
0161-IPA-do-not-look-up-overrides-on-client-with-default-.patch
0162-IPA-make-version-check-more-precise.patch
0163-IPA-add-missing-break.patch
0164-IPA-process_members-optionally-return-missing-member.patch
0165-IPA-rename-ipa_s2n_get_groups_send-to-ipa_s2n_get_fq.patch
0166-IPA-resolve-missing-members.patch
0167-IPA-set-SYSDB_INITGR_EXPIRE-for-RESP_USER_GROUPLIST.patch
0168-krb5_child-Return-ERR_NETWORK_IO-on-KRB5_KDCREP_SKEW.patch
0169-krb5-fix-entry-order-in-MEMORY-keytab.patch
0170-nss-make-fill_orig-multi-value-aware.patch
0171-nss-refactor-fill_orig.patch
0172-nss-Add-original-DN-and-memberOf-to-origbyname-reque.patch
0173-Open-the-PAC-socket-from-krb5_child-before-dropping-.patch
0174-views-fix-GID-overrride-for-mpg-domains.patch
0175-IPA-properly-handle-mixed-case-trusted-domains.patch
0176-nss-fix-SID-lookups.patch
0177-sysdb-remove-ghosts-in-all-sub-domains-as-well.patch
0178-IPA-Rename-user_dom-into-obj_dom.patch
0179-IPA-resolve-IPA-group-memberships-for-AD-users.patch
0180-IPA-process_members-add-ghosts-only-once.patch
0181-IPA-Use-attr-s-dom-for-users-too.patch
0182-SELINUX-Call-setuid-0-setgid-0-to-also-set-the-real-.patch
0183-SELINUX-Set-and-reset-umask-when-caling-set_seuser-f.patch
0184-LDAP-Add-UUID-when-saving-incomplete-groups.patch
0185-IPA-Resolve-IPA-user-groups-overrideDN-in-non-defaul.patch
0186-ipa_s2n_save_objects-properly-handle-fully-qualified.patch
0187-AD-use-GC-for-SID-requests-as-well.patch
0188-fill_id-fix-LE-BE-issue-with-wrong-data-type.patch
0189-LDAP-unlink-ccname_file_dummy-if-there-is-an-error.patch
0190-selinux-Delete-existing-user-mapping-on-empty-defaul.patch
0191-ldap_child-initialized-ccname_file_dummy.patch
0192-ipa_selinux-Fix-warning-may-be-used-uninitialized.patch
0193-selinux-Handle-setup-with-empty-default-and-no-confi.patch
0194-IPA-idviews-check-if-view-name-is-set.patch
0195-IPA-make-sure-output-variable-is-set.patch
0196-IPA-set-EINVAL-if-dn-can-t-be-linearized.patch
0197-LDAP-AD-do-not-resolve-group-members-during-tokenGro.patch
0198-SDAP-Do-not-set-gid-0-twice.patch
0199-SDAP-Extract-filtering-AD-group-to-function.patch
0200-SDAP-Filter-ad-groups-in-initgroups.patch
0201-sdap-properly-handle-binary-objectGuid-attribute.patch
0202-Download-complete-groups-if-ignore_group_members-is-.patch
0203-confdb-Add-new-option-subdomain_inherit.patch
0204-DP-Add-a-function-to-inherit-DP-options-if-set.patch
0205-SDAP-Add-sdap_copy_map_entry.patch
0206-UTIL-Inherit-ignore_group_members.patch
0207-subdomains-Inherit-cleanup-period-and-tokengroup-set.patch
0208-sudo-sanitize-filter-values.patch