Age | Commit message (Collapse) | Author | Files | Lines | |
---|---|---|---|---|---|
2013-01-23 | Check that strings do not go beyond the end of the packet body in autofs and ↵ | Jan Cholasta | 1 | -4/+4 | |
SSH requests. This fixes CVE-2013-0220. https://fedorahosted.org/sssd/ticket/1781 | |||||
2013-01-15 | Add domain arguments to sysdb ssh functions | Simo Sorce | 1 | -3/+4 | |
2013-01-15 | Add domain argument to sysdb_get_user_attr() | Simo Sorce | 1 | -1/+1 | |
2012-12-18 | RESPONDERS: Create a common file with service names and versions | Jakub Hrozek | 2 | -3/+1 | |
The monitor sends calls different sbus methods to different responders. Instead of including headers of the particular responders directly in monitor, which breaks layering a little, create a common header file that will be included from src/responder/common/ | |||||
2012-12-10 | SSH: Reject requests for authorized keys of root | Jan Cholasta | 1 | -0/+5 | |
https://fedorahosted.org/sssd/ticket/1687 | |||||
2012-10-29 | Include talloc log in our debug facility | Michal Zidek | 1 | -1/+1 | |
https://fedorahosted.org/sssd/ticket/1495 | |||||
2012-10-09 | Fix uninitialized pointer read in ssh_host_pubkeys_update_known_hosts | Jakub Hrozek | 1 | -1/+2 | |
2012-10-05 | SSH: Expire hosts in known_hosts | Jan Cholasta | 3 | -1/+21 | |
2012-10-05 | SSH: Refactor sysdb and related code | Jan Cholasta | 2 | -73/+52 | |
2012-10-01 | Add new option default_domain_suffix | Sumit Bose | 1 | -1/+2 | |
2012-09-20 | SSH: Fix possible infinite loop when updating known_hosts | Jan Cholasta | 1 | -3/+1 | |
2012-09-04 | SSH: Simplify public key formatting function | Jan Cholasta | 1 | -4/+2 | |
2012-09-04 | SSH: Return error code in SSH utility functions | Jan Cholasta | 1 | -6/+7 | |
2012-06-12 | Make re_expression and full_name_format per domain options | Stef Walter | 1 | -2/+2 | |
* Allows different user/domain qualified names for different domains. For example Domain\User or user@domain. * The global re_expression and full_name_format options remain as defaults for the domains. * Subdomains get the re_expression and full_name_format of their parent domain. https://bugzilla.redhat.com/show_bug.cgi?id=811663 | |||||
2012-05-03 | SSH: Add dp_get_host_send to common responder code | Jakub Hrozek | 3 | -9/+184 | |
Instead of using account_info request, creates a new ssh specific request. This improves code readability and will make the code more flexible in the future. https://fedorahosted.org/sssd/ticket/1176 | |||||
2012-05-02 | SSH: return NULL on error in ssh_host_pubkeys_format_known_host_plain | Jakub Hrozek | 1 | -1/+2 | |
The 'result' pointer must be initialized tin order to always return a defined value. | |||||
2012-04-24 | SSH: Add support for hashed known_hosts | Jan Cholasta | 3 | -36/+171 | |
https://fedorahosted.org/sssd/ticket/1203 | |||||
2012-04-24 | Modified responder_get_domain() | Jan Zeleny | 1 | -2/+2 | |
Now it checks for subdomains as well as for the domain itself | |||||
2012-04-20 | Convert read and write operations to sss_atomic_read | Jakub Hrozek | 1 | -1/+1 | |
https://fedorahosted.org/sssd/ticket/1209 | |||||
2012-03-15 | SSH: Allow clients to explicitly specify host alias | Jan Cholasta | 3 | -67/+38 | |
This change removes the need to canonicalize host names on the responder side - the relevant code was removed. | |||||
2012-03-09 | SSH: Fix missing semicolon | Stephen Gallagher | 1 | -1/+1 | |
2012-03-09 | Add umask before mkstemp() call in SSH responder | Jan Zeleny | 1 | -0/+3 | |
2012-03-08 | Use the correct hash table for pending requests | Simo Sorce | 1 | -1/+1 | |
The function that handled pending requests on reconnect was checking an orphaned global variable that was never used, redenring the whole function uselsess. This fixes a very nasty bug that was causing requests for which we never received an answer for (for example because the backend failed and was restarted) to be never removed and therefore causing a black hole effect for any other request of the same type. Fixes: https://fedorahosted.org/sssd/ticket/1229 | |||||
2012-02-29 | Remove sysdb_get_ctx_from_list() | Sumit Bose | 1 | -8/+6 | |
2012-02-27 | SSH: Replace blocking getaddrinfo call in the responder with asynchronous ↵ | Jan Cholasta | 3 | -26/+56 | |
resolver code | |||||
2012-02-27 | SSH: Use fchmod instead of chmod on known_hosts file | Jan Cholasta | 1 | -8/+4 | |
2012-02-27 | SSH: Add more debugging messages | Jan Cholasta | 1 | -0/+8 | |
2012-02-27 | SSH: Don't abort known_hosts update when host search fails | Jan Cholasta | 1 | -1/+1 | |
2012-02-26 | SSH: Manage global known_hosts file in the responder | Jan Cholasta | 2 | -0/+134 | |
https://fedorahosted.org/sssd/ticket/1193 | |||||
2012-02-26 | SSH: Save SSH host name aliases | Jan Cholasta | 2 | -1/+26 | |
2012-02-21 | Don't give memory context in confdb where not needed | Jan Zeleny | 1 | -1/+1 | |
2012-02-13 | SSH: Verify that names received from client are valid UTF-8 in responder | Jan Cholasta | 1 | -0/+4 | |
Also added a comment describing the wire format of client requests and responses. https://fedorahosted.org/sssd/ticket/1177 | |||||
2012-02-07 | Fix SSH compilation on RHEL5 | Jakub Hrozek | 1 | -0/+3 | |
2012-02-07 | SSH: Responder | Jan Cholasta | 3 | -0/+872 | |