Age | Commit message (Collapse) | Author | Files | Lines | |
---|---|---|---|---|---|
2012-07-27 | Renamed session provider to selinux provider | Jan Zeleny | 1 | -7/+8 | |
2012-07-23 | manpage: seealso - include ssh conditionally | Pavel Březina | 1 | -6/+10 | |
SSH utilities were included in see also section even if SSSD is built without SSH support. | |||||
2012-07-20 | NSS: Add override_shell option | Stephen Gallagher | 1 | -0/+14 | |
If override_shell is specified in the [nss] section, all users managed by SSSD will have their shell set to this value. If it is specified in the [domain/DOMAINNAME] section, it will apply to only that domain (and override the [nss] value, if any). https://fedorahosted.org/sssd/ticket/1087 | |||||
2012-07-20 | MAN: Improvements to the AD provider manpage | Stephen Gallagher | 2 | -0/+114 | |
Add information about ID mapping (including how to disable it) as well as information on how to handle homedir and shell. https://fedorahosted.org/sssd/ticket/1433 | |||||
2012-07-20 | MAN: List all available backends for provider options | Stephen Gallagher | 1 | -14/+84 | |
https://fedorahosted.org/sssd/ticket/1432 | |||||
2012-07-18 | Update translations for 1.9.0 beta 5 release | Jakub Hrozek | 12 | -2298/+15641 | |
2012-07-10 | Fix typo: exhasution->exhaustion. | Yuri Chornoivan | 1 | -1/+1 | |
2012-07-10 | Update translations for 1.9.0 beta 4 release | Jakub Hrozek | 11 | -5689/+7545 | |
2012-07-10 | pac responder: limit access by checking UIDs | Sumit Bose | 1 | -4/+27 | |
A check for allowed UIDs is added in the common responder code directly after accept(). If the platform does not support reading the UID of the peer but allowed UIDs are configured, access is denied. Currently only the PAC responder sets the allowed UIDs for a socket. The default is that only root is allowed to access the socket of the PAC responder. Fixes: https://fedorahosted.org/sssd/ticket/1382 | |||||
2012-07-06 | AD: Add manpages and SSSDConfig entries | Stephen Gallagher | 4 | -1/+160 | |
2012-07-06 | MAN: Unify "SEE ALSO" sections | Stephen Gallagher | 22 | -331/+111 | |
2012-06-29 | sudo: manpage updated | Pavel Březina | 2 | -34/+131 | |
Removes old options and adds new ones. | |||||
2012-06-25 | Update translations for 1.9.0 beta 3 release | Stephen Gallagher | 10 | -7226/+9148 | |
2012-06-25 | Set default for subdomain_homedir | Sumit Bose | 1 | -0/+3 | |
2012-06-25 | Add man page section for the PAC responder | Sumit Bose | 2 | -1/+40 | |
2012-06-18 | Make the client idle timeout configurable | Stephen Gallagher | 1 | -0/+15 | |
2012-06-15 | Updating translations for 1.9.0 beta 2 release | Stephen Gallagher | 9 | -817/+357 | |
2012-06-14 | Add support for storing credential caches in the DIR: back end | Jakub Hrozek | 1 | -4/+6 | |
https://fedorahosted.org/sssd/ticket/974 | |||||
2012-06-13 | LDAP: Auto-detect support for the ldap match rule | Stephen Gallagher | 1 | -1/+13 | |
This patch extends the RootDSE lookup so that we will perform a second request to test whether the match rule syntax can be used. If both groups and initgroups are disabled in the configuration, this lookup request can be skipped. | |||||
2012-06-13 | LDAP: Add ldap_*_use_matching_rule_in_chain options | Stephen Gallagher | 1 | -0/+47 | |
2012-06-12 | Clarify how comments work in sssd.conf | Ariel Barria | 1 | -1/+2 | |
2012-06-12 | Make re_expression and full_name_format per domain options | Stef Walter | 1 | -18/+49 | |
* Allows different user/domain qualified names for different domains. For example Domain\User or user@domain. * The global re_expression and full_name_format options remain as defaults for the domains. * Subdomains get the re_expression and full_name_format of their parent domain. https://bugzilla.redhat.com/show_bug.cgi?id=811663 | |||||
2012-06-10 | Allow fast memcache timeout to be configurable | Jan Zeleny | 1 | -0/+12 | |
https://fedorahosted.org/sssd/ticket/1318 | |||||
2012-06-10 | IPA subdomains - ask for information about master domain | Jan Zeleny | 1 | -0/+19 | |
The query is performed only if there is missing information in the cache. That means this should be done only once after restart when cache doesn't exist. All subsequent requests for subdomains won't include the request for master domain. | |||||
2012-05-31 | SSH: Update sss_ssh_knownhostsproxy manual page | Jan Cholasta | 1 | -1/+1 | |
Don't use GlobalKnownHostsFile2 in ssh_config, as it has been deprecated in OpenSSH 5.9. | |||||
2012-05-22 | Update translation sources | Stephen Gallagher | 10 | -41/+41 | |
2012-05-14 | Fix typos in message and man pages. | Yuri Chornoivan | 2 | -3/+3 | |
2012-05-11 | Updating translations for 1.9.0 beta 1 release | Stephen Gallagher | 10 | -7608/+14545 | |
2012-05-11 | Bad check for id_provider=local and access_provider=permit | Ariel Barria | 1 | -1/+1 | |
documentation-access_provider Signed-off-by: Stephen Gallagher <sgallagh@redhat.com> | |||||
2012-05-09 | NSS: Add default_shell option | Stephen Gallagher | 1 | -0/+15 | |
This option will allow administrators to set a default shell to be used if a user does not have one set in the identity provider. https://fedorahosted.org/sssd/ticket/1289 | |||||
2012-05-09 | NSS: Add fallback_homedir option | Stephen Gallagher | 1 | -0/+18 | |
This option is similar to override_homedir, except that it will take effect only for users that do not have an explicit home directory specified in LDAP. https://fedorahosted.org/sssd/ticket/1250 | |||||
2012-05-09 | Clearer documentation for use_fully_qualified_names | Stef Walter | 1 | -0/+5 | |
* Previously only the side effect was described. | |||||
2012-05-04 | Modify behavior of pam_pwd_expiration_warning | Jan Zeleny | 1 | -1/+34 | |
New option pwd_expiration_warning is introduced which can be set per domain and can override the value specified by the original pam_pwd_expiration_warning. If the value of expiration warning is set to zero, the filter isn't apllied at all - if backend server returns the warning, it will be automatically displayed. Default value for Kerberos: 7 days Default value for LDAP: don't apply the filter Technical note: default value when creating the domain is -1. This is important so we can distinguish between "no value set" and 0. Without this possibility it would be impossible to set different values for LDAP and Kerberos provider. | |||||
2012-05-03 | MAN: Add manpage for ID mapping | Stephen Gallagher | 3 | -0/+214 | |
2012-05-03 | LDAP: Add objectSID config option | Stephen Gallagher | 1 | -0/+30 | |
2012-04-24 | SSH: Add support for hashed known_hosts | Jan Cholasta | 1 | -0/+25 | |
https://fedorahosted.org/sssd/ticket/1203 | |||||
2012-04-24 | New config option for subdomains | Jan Zeleny | 1 | -0/+15 | |
subdomain_homedir - if set, it contains default value, can be overriden in further processing | |||||
2012-04-24 | IPA: Add get-domains target | Sumit Bose | 1 | -0/+19 | |
2012-04-24 | data provider: added subdomains | Sumit Bose | 1 | -0/+24 | |
2012-04-24 | Responder part of the subdomain retrieval work | Jan Zeleny | 1 | -0/+24 | |
2012-04-20 | Fix typo: retreiving->retrieving | Yuri Chornoivan | 1 | -1/+1 | |
2012-04-20 | Two manual pages fixes | Marco Pizzoli | 2 | -1/+3 | |
2012-04-20 | Warn on 'make update-po' if there are manpages not listed in po4a.cfg | Jakub Hrozek | 1 | -0/+7 | |
https://fedorahosted.org/sssd/ticket/1219 | |||||
2012-04-20 | Document sss_tools better | Jakub Hrozek | 9 | -0/+35 | |
https://fedorahosted.org/sssd/ticket/917 | |||||
2012-04-20 | Make the monitor SIGKILL time configurable | Jakub Hrozek | 1 | -0/+16 | |
https://fedorahosted.org/sssd/ticket/1119 | |||||
2012-04-20 | proxy: new option proxy_fast_alias | Jakub Hrozek | 1 | -0/+17 | |
2012-04-18 | MAN: document the hostid and autofs providers | Jakub Hrozek | 1 | -0/+60 | |
2012-04-18 | MAN: timeout can be specified for services, too | Jakub Hrozek | 1 | -14/+13 | |
2012-04-18 | sss_cache: support invalidating services and autofs maps | Jakub Hrozek | 1 | -0/+44 | |
https://fedorahosted.org/sssd/ticket/1170 | |||||
2012-04-18 | Remove the "command" option from documentation | Jakub Hrozek | 1 | -16/+0 | |
It is a low-level developer option not indended to be consumed by users https://fedorahosted.org/sssd/ticket/1174 |