cdf651 import sssd-1.16.2-13.el7

Authored and Committed by centosrcm 5 years ago
165 files changed. 7099 lines added. 25331 lines removed.
.gitignore
file modified
+1 -3
.sssd.metadata
file modified
+1 -3
SOURCES/0001-NSS-Move-memcache-setup-to-separate-function.patch
file removed
-143
SOURCES/0001-krb5-locator-add-support-for-multiple-addresses.patch
file added
+468
SOURCES/0002-NSS-Specify-memcache_timeout-0-semantics.patch
file removed
-118
SOURCES/0002-krb5-locator-fix-IPv6-support.patch
file added
+65
SOURCES/0003-MAN-Document-memcache_timeout-0-meaning.patch
file removed
-51
SOURCES/0003-krb5-locator-make-plugin-more-robust.patch
file added
+35
SOURCES/0004-CONFIG-Add-a-new-option-auto_private_groups.patch
file removed
-159
SOURCES/0004-krb5-locator-add-unit-tests.patch
file added
+724
SOURCES/0005-AD-IPA-Create-kdcinfo-file-for-sub-domains.patch
file added
+148
SOURCES/0005-CONFDB-Remove-the-obsolete-option-magic_private_grou.patch
file removed
-33
SOURCES/0006-SDAP-Allow-the-mpg-flag-for-the-main-domain.patch
file removed
-167
SOURCES/0006-krb5-refactor-removal-of-krb5info-files.patch
file added
+493
SOURCES/0007-LDAP-Turn-group-request-into-user-request-for-MPG-do.patch
file removed
-222
SOURCES/0007-krb5_common-add-callback-only-once.patch
file added
+86
SOURCES/0008-SYSDB-Prevent-users-and-groups-ID-collision-in-MPG-d.patch
file removed
-97
SOURCES/0008-data-provider-run-offline-callbacks-only-once.patch
file added
+95
SOURCES/0009-TESTS-Add-integration-tests-for-the-auto_private_gro.patch
file removed
-346
SOURCES/0009-TESTS-Extend-the-schema-with-sshPublicKey-attribute.patchSOURCES/0112-TESTS-Extend-the-schema-with-sshPublicKey-attribute.patch
file renamed
+3 -3
SOURCES/0010-CACHE_REQ-Copy-the-cr_domain-list-for-each-request.patch
file removed
-142
SOURCES/0010-TESTS-Allow-adding-sshPublicKey-for-users.patchSOURCES/0113-TESTS-Allow-adding-sshPublicKey-for-users.patch
file renamed
+2 -2
SOURCES/0011-MAN-GPO-Security-Filtering-limitation.patch
file removed
-41
SOURCES/0011-TESTS-Add-a-basic-SSH-responder-test.patchSOURCES/0114-TESTS-Add-a-basic-SSH-responder-test.patch
file renamed
+7 -7
SOURCES/0012-SSH-Do-not-exit-abruptly-if-SSHD-closes-its-end-of-t.patchSOURCES/0115-SSH-Do-not-exit-abruptly-if-SSHD-closes-its-end-of-t.patch
file renamed
+3 -3
SOURCES/0012-sudo-always-use-srv_opts-from-id-context.patch
file removed
-64
SOURCES/0013-AD-Remember-last-site-discovered.patch
file removed
-109
SOURCES/0013-TESTS-Add-a-helper-binary-that-can-trigger-the-SIGPI.patchSOURCES/0116-TESTS-Add-a-helper-binary-that-can-trigger-the-SIGPI.patch
file renamed
+9 -9
SOURCES/0014-TESTS-Add-a-regression-test-for-SIGHUP-handling-in-s.patchSOURCES/0117-TESTS-Add-a-regression-test-for-SIGHUP-handling-in-s.patch
file renamed
+3 -3
SOURCES/0014-sysdb-add-functions-to-get-set-client-site.patch
file removed
-206
SOURCES/0015-AD-Remember-last-site-discovered-in-sysdb.patch
file removed
-161
SOURCES/0015-Revert-LDAP-IPA-add-local-email-address-to-aliases.patch
file added
+141
SOURCES/0016-UTIL-Add-wrapper-function-to-configure-logger.patch
file removed
-133
SOURCES/0016-util-Remove-the-unused-function-is_email_from_domain.patch
file added
+117
SOURCES/0017-Add-parameter-logger-to-daemons.patch
file removed
-830
SOURCES/0017-TESTS-Allow-storing-e-mail-address-for-users.patch
file added
+65
SOURCES/0018-SYSTEMD-Replace-parameter-debug-to-files-with-DEBUG_.patch
file removed
-259
SOURCES/0018-TESTS-Add-regression-test-for-looking-up-users-with-.patch
file added
+93
SOURCES/0019-MAN-Remove-outdated-notes-from-the-re_expression-des.patch
file added
+47
SOURCES/0019-SYSTEMD-Add-environment-file-to-responder-service-fi.patch
file removed
-107
SOURCES/0020-SUDO-Create-the-socket-with-stricter-permissions.patch
file added
+58
SOURCES/0020-UTIL-Hide-and-deprecate-parameter-debug-to-files.patch
file removed
-47
SOURCES/0021-LDAP-Bind-to-the-LDAP-server-also-in-the-auth.patch
file removed
-213
SOURCES/0021-MAN-Give-information-regarding-priority-of-ldap-look.patch
file added
+49
SOURCES/0022-AD-LDAP-Do-not-misuse-the-ignore_mark_offline-to-che.patch
file added
+82
SOURCES/0022-sss_client-create-nss_common.h.patch
file removed
-143
SOURCES/0023-AD-expose-the-helper-function-to-format-the-site-DNS.patch
file added
+91
SOURCES/0023-nss-idmap-add-nss-like-calls-with-timeout-and-flags.patch
file removed
-901
SOURCES/0024-NSS-add-_EX-version-of-some-requests.patch
file removed
-606
SOURCES/0024-RESOLV-Add-a-resolv_hostport_list-request.patch
file added
+265
SOURCES/0025-KRB5-IPA-AD-Add-a-utility-function-to-create-a-krb5_.patch
file added
+246
SOURCES/0025-NSS-add-support-for-SSS_NSS_EX_FLAG_NO_CACHE.patch
file removed
-149
SOURCES/0026-CACHE_REQ-Add-cache_req_data_set_bypass_dp.patch
file removed
-112
SOURCES/0026-KRB5-Allow-writing-multiple-addresses-to-the-kdcinfo.patch
file added
+246
SOURCES/0027-IPA-Add-the-options-that-the-IPA-subdomains-code-wil.patch
file added
+67
SOURCES/0027-nss-make-memcache_delete_entry-public.patch
file removed
-49
SOURCES/0028-IPA-Populate-kdcinfo-files-on-trust-clients-with-con.patch
file added
+800
SOURCES/0028-NSS-add-support-for-SSS_NSS_EX_FLAG_INVALIDATE_CACHE.patch
file removed
-365
SOURCES/0029-MAN-Document-the-options-available-for-AD-trusted-do.patch
file added
+120
SOURCES/0029-NSS-TESTS-add-unit-tests-for-_EX-requests.patch
file removed
-590
SOURCES/0030-AD-consider-resource_groups-in-PAC-as-well.patch
file added
+334
SOURCES/0030-nss-idmap-add-timeout-version-of-old-sss_nss_-calls.patch
file removed
-494
SOURCES/0031-LDAP-Remove-the-legacy-POSIX-check-itself.patch
file added
+321
SOURCES/0031-nss-idmap-allow-empty-buffer-with-SSS_NSS_EX_FLAG_IN.patch
file removed
-184
SOURCES/0032-BUILD-Properly-expand-variables-in-sssd-ifp.service.patch
file removed
-51
SOURCES/0032-LDAP-AD-Remove-the-legacy-POSIX-check-from-user-grou.patch
file added
+385
SOURCES/0033-AD-Remove-the-legacy-check-from-ad_get_account_domai.patch
file added
+122
SOURCES/0033-SYSTEMD-Clean-pid-file-in-corner-cases.patch
file removed
-39
SOURCES/0034-AD-Add-Global-Catalog-usability-check-in-subdomain-c.patch
file added
+423
SOURCES/0034-CHILD-Pass-information-about-logger-to-children.patch
file removed
-198
SOURCES/0035-LDAP-Improve-error-treatment-from-sdap_cli_connect-i.patch
file removed
-58
SOURCES/0035-SDAP-Detect-schemaNamingContext-from-the-rootDSE.patch
file added
+92
SOURCES/0036-deskprofile-don-t-bail-if-we-fail-to-save-one-profil.patchSOURCES/0123-deskprofile-don-t-bail-if-we-fail-to-save-one-profil.patch
file renamed
+5 -5
SOURCES/0036-p11_child-return-multiple-certs.patch
file removed
-598
SOURCES/0037-PAM-handled-multiple-certs-in-the-responder.patch
file removed
-1074
SOURCES/0037-SUDO-Fix-running-in-unprivileged-responder.patch
file added
+95
SOURCES/0038-SUDO-Root-should-be-able-to-read-write-sssd-sudo-soc.patch
file added
+39
SOURCES/0038-pam_sss-refactoring-use-struct-cert_auth_info.patch
file removed
-680
SOURCES/0039-p11_child-use-options-to-select-certificate-for-auth.patch
file removed
-609
SOURCES/0039-sdap-respect-passwordGracelimit.patch
file added
+93
SOURCES/0040-MC-Remove-check-if-record-is-in-the-mapped-address-s.patch
file added
+93
SOURCES/0040-pam-add-prompt-string-for-certificate-authentication.patch
file removed
-337
SOURCES/0041-PAM-allow-missing-logon_name-during-certificate-auth.patch
file removed
-256
SOURCES/0041-Revert-CRYPTO-Suppress-warning-Wstringop-truncation.patch
file added
+54
SOURCES/0042-Revert-Revert-CRYPTO-Suppress-warning-Wstringop-trun.patch
file added
+52
SOURCES/0042-p11_child-add-descriptions-for-error-codes-to-debug-.patch
file removed
-276
SOURCES/0043-CRYPTO-Save-prefix-in-s3crypt_sha512.patch
file added
+48
SOURCES/0043-pam-filter-certificates-in-the-responder-not-in-the-.patch
file removed
-357
SOURCES/0044-PAM-add-certificate-s-label-to-the-selection-prompt.patch
file removed
-274
SOURCES/0044-crypto-tests-Add-unit-test-for-s3crypt_sha512.patch
file added
+68
SOURCES/0045-SSS_CERT-Close-file-descriptors-after-executing-p11_.patch
file added
+44
SOURCES/0045-SYSDB-Remove-code-causing-a-covscan-warning.patch
file removed
-128
SOURCES/0046-SELINUX-Also-call-is_selinux_enabled-as-a-check-for-.patch
file added
+60
SOURCES/0046-SYSDB-Better-debugging-for-email-conflicts.patch
file removed
-94
SOURCES/0047-NSS-Use-enum_ctx-as-memory_context-in-_setnetgrent_s.patch
file removed
-39
SOURCES/0048-TOOLS-Add-a-new-sssctl-command-access-report.patch
file removed
-504
SOURCES/0049-dp-use-void-to-express-empty-output-argument-list.patch
file removed
-50
SOURCES/0050-dp-add-method-to-refresh-access-control-rules.patch
file removed
-192
SOURCES/0051-ipa-implement-method-to-refresh-HBAC-rules.patch
file removed
-140
SOURCES/0052-ifp-add-method-to-refresh-access-control-rules-in-do.patch
file removed
-158
SOURCES/0053-sssctl-call-dbus-instead-of-pam-to-refresh-HBAC-rule.patch
file removed
-200
SOURCES/0054-sysdb-be_refresh_get_values_ex-remove-unused-option.patch
file removed
-66
SOURCES/0055-sysdb-do-not-use-objectClass-for-users-and-groups.patch
file removed
-758
SOURCES/0056-sysdb-do-not-use-LDB_SCOPE_ONELEVEL.patch
file removed
-83
SOURCES/0057-sysdb-remove-IDXONE-and-objectClass-from-users-and-g.patch
file removed
-384
SOURCES/0058-mmap_cache-make-checks-independent-of-input-size.patch
file removed
-175
SOURCES/0059-NSS-Fix-covscan-warning.patch
file removed
-54
SOURCES/0060-responder-Fix-talloc-hierarchy-in-sized_output_name.patch
file removed
-59
SOURCES/0061-test_responder-Check-memory-leak-in-sized_output_nam.patch
file removed
-58
SOURCES/0062-UTIL-add-find_domain_by_object_name_ex.patch
file removed
-82
SOURCES/0063-ipa-handle-users-from-different-domains-in-ipa_resol.patch
file removed
-76
SOURCES/0064-overrides-fixes-for-sysdb_invalidate_overrides.patch
file removed
-203
SOURCES/0065-ipa-check-for-SYSDB_OVERRIDE_DN-in-process_members-a.patch
file removed
-254
SOURCES/0066-IPA-use-cache-searches-in-get_groups_dns.patch
file removed
-70
SOURCES/0067-ipa-compare-DNs-instead-of-group-names-in-ipa_s2n_sa.patch
file removed
-86
SOURCES/0068-SDAP-Split-out-utility-function-sdap_get_object_doma.patch
file removed
-92
SOURCES/0069-LDAP-Extract-the-check-whether-to-run-a-POSIX-check-.patch
file removed
-115
SOURCES/0070-LDAP-Only-run-the-POSIX-check-with-a-GC-connection.patch
file removed
-95
SOURCES/0071-SDAP-Search-with-a-NULL-search-base-when-looking-up-.patch
file removed
-191
SOURCES/0072-SDAP-Rename-sdap_posix_check-to-sdap_gc_posix_check.patch
file removed
-251
SOURCES/0073-DP-Create-a-new-handler-function-getAccountDomain.patch
file removed
-455
SOURCES/0074-AD-Implement-a-real-getAccountDomain-handler-for-the.patch
file removed
-553
SOURCES/0075-RESP-Expose-DP-method-getAccountDomain-to-responders.patch
file removed
-239
SOURCES/0076-NEGCACHE-Add-API-for-setting-and-checking-locate-acc.patch
file removed
-371
SOURCES/0077-TESTS-Add-tests-for-the-object-by-id-cache_req-inter.patch
file removed
-439
SOURCES/0078-CACHE_REQ-Export-cache_req_search_ncache_add-as-cach.patch
file removed
-77
SOURCES/0079-CACHE_REQ-Add-plugin-methods-required-for-the-domain.patch
file removed
-458
SOURCES/0080-CACHE_REQ-Add-a-private-request-cache_req_locate_dom.patch
file removed
-177
SOURCES/0081-CACHE_REQ-Implement-the-plugin-methods-that-utilize-.patch
file removed
-413
SOURCES/0082-CACHE_REQ-Use-the-domain-locator-request-to-only-sea.patch
file removed
-2048
SOURCES/0083-MAN-Document-how-the-Global-Catalog-is-used-currentl.patch
file removed
-48
SOURCES/0084-p11_child-make-sure-OCSP-checks-are-done.patch
file removed
-54
SOURCES/0085-IPA-Include-SYSDB_OBJECTCATEGORY-not-OBJECTCLASS-in-.patch
file removed
-43
SOURCES/0086-nss-idmap-allow-NULL-result-in-_timeout-calls.patch
file removed
-113
SOURCES/0087-cache-Check-for-max_id-min_id-in-cache_req.patch
file removed
-353
SOURCES/0088-Revert-p11_child-make-sure-OCSP-checks-are-done.patch
file removed
-47
SOURCES/0089-p11_child-properly-check-results-of-CERT_VerifyCerti.patch
file removed
-64
SOURCES/0090-ifp-use-realloc-in-ifp_list_ctx_remaining_capacity.patch
file removed
-92
SOURCES/0091-IPA-Delay-the-first-periodic-refresh-of-trusted-doma.patch
file removed
-64
SOURCES/0092-sysdb-add-userMappedCertificate-to-the-index.patch
file removed
-55
SOURCES/0093-AD-Inherit-the-MPG-setting-from-the-main-domain.patch
file removed
-48
SOURCES/0094-SDAP-skip-builtin-AD-groups-in-sdap_save_grpmem.patch
file removed
-53
SOURCES/0095-SYSDB-Read-the-ldb_message-from-loop-s-index-counter.patch
file removed
-39
SOURCES/0096-nss-idmap-check-timed-muted-return-code.patch
file removed
-73
SOURCES/0097-DESKPROFILE-Add-checks-for-user-and-host-category.patch
file removed
-155
SOURCES/0098-SELINUX-Check-if-SELinux-is-managed-in-selinux_child.patch
file removed
-203
SOURCES/0099-util-Add-sss_-prefix-to-some-functions.patch
file removed
-142
SOURCES/0100-MAN-Explain-how-does-auto_private_groups-affect-subd.patch
file removed
-43
SOURCES/0101-AD-Use-the-right-sdap_domain-for-the-forest-root.patch
file removed
-201
SOURCES/0102-AD-sdap_get_ad_tokengroups_done-allocate-temporary-d.patch
file removed
-47
SOURCES/0103-AD-do-not-allocate-temporary-data-on-long-living-con.patch
file removed
-89
SOURCES/0104-nss-idmap-do-not-set-a-limit.patch
file removed
-37
SOURCES/0105-nss-idmap-use-right-group-list-pointer-after-sss_get.patch
file removed
-69
SOURCES/0106-nss-add-a-netgroup-counter-to-struct-nss_enum_index.patch
file removed
-119
SOURCES/0107-nss-initialize-nss_enum_index-in-nss_setnetgrent.patch
file removed
-36
SOURCES/0108-NSS-nss_clear_netgroup_hash_table-do-not-free-data.patch
file removed
-52
SOURCES/0109-winbind-idmap-plugin-support-inferface-version-6.patch
file removed
-236
SOURCES/0110-winbind-idmap-plugin-fix-detection.patch
file removed
-49
SOURCES/0111-Do-not-keep-allocating-external-groups-on-a-long-liv.patch
file removed
-59
SOURCES/0118-TESTS-Order-list-of-entries-in-some-lists.patch
file removed
-175
SOURCES/0119-sysdb-add-sysdb_getgrgid_attrs.patch
file removed
-171
SOURCES/0120-ipa-use-mpg-aware-group-lookup-in-get_object_from_ca.patch
file removed
-61
SOURCES/0121-ipa-allow-mpg-group-objects-in-apply_subdomain_homed.patch
file removed
-47
SOURCES/0122-AD-LDAP-do-not-fall-back-to-mpg-user-lookup-on-GC-co.patch
file removed
-68
SPECS/sssd.spec
file modified
+141 -153
    import sssd-1.16.2-13.el7
    
        
file modified
+1 -3
file modified
+1 -3
SOURCES/0009-TESTS-Extend-the-schema-with-sshPublicKey-attribute.patch SOURCES/0112-TESTS-Extend-the-schema-with-sshPublicKey-attribute.patch
file renamed
+3 -3
SOURCES/0010-TESTS-Allow-adding-sshPublicKey-for-users.patch SOURCES/0113-TESTS-Allow-adding-sshPublicKey-for-users.patch
file renamed
+2 -2
SOURCES/0011-TESTS-Add-a-basic-SSH-responder-test.patch SOURCES/0114-TESTS-Add-a-basic-SSH-responder-test.patch
file renamed
+7 -7
SOURCES/0012-SSH-Do-not-exit-abruptly-if-SSHD-closes-its-end-of-t.patch SOURCES/0115-SSH-Do-not-exit-abruptly-if-SSHD-closes-its-end-of-t.patch
file renamed
+3 -3
SOURCES/0013-TESTS-Add-a-helper-binary-that-can-trigger-the-SIGPI.patch SOURCES/0116-TESTS-Add-a-helper-binary-that-can-trigger-the-SIGPI.patch
file renamed
+9 -9
SOURCES/0014-TESTS-Add-a-regression-test-for-SIGHUP-handling-in-s.patch SOURCES/0117-TESTS-Add-a-regression-test-for-SIGHUP-handling-in-s.patch
file renamed
+3 -3
SOURCES/0036-deskprofile-don-t-bail-if-we-fail-to-save-one-profil.patch SOURCES/0123-deskprofile-don-t-bail-if-we-fail-to-save-one-profil.patch
file renamed
+5 -5
file modified
+141 -153