|
0001-util-Move-semanage-related-functions-to-src-util.patch
|
|
0002-sss_semanage-Add-mlsrange-parameter-to-set_seuser.patch
|
|
0003-IPA-Use-set_seuser-instead-of-writing-selinux-login-.patch
|
|
0004-SSSD-Add-the-options-to-specify-a-UID-and-GID-to-run.patch
|
|
0005-SSSD-Chown-the-log-files.patch
|
|
0006-UTIL-Use-a-custom-PID_PATH-and-DB_PATH-when-unit-tes.patch
|
|
0007-TESTS-Unit-tests-can-use-confdb-without-using-sysdb.patch
|
|
0008-TESTS-Add-std-gnu99-to-cwrap-tests-CFLAGS.patch
|
|
0009-TESTS-Unit-tests-for-server_setup.patch
|
|
0010-RPM-Package-the-libsss_semanage.so-library.patch
|
|
0011-ipa-fix-issues-with-older-servers-not-supporting-vie.patch
|
|
0012-ipa-improve-error-reporting-for-extdom-LDAP-exop.patch
|
|
0013-BUILD-Fix-automake-warning.patch
|
|
0014-test_server-Fix-waiting-for-background-process.patch
|
|
0015-ipa_subdomains_handler_master_done-initialize-reply_.patch
|
|
0016-Fix-debug-messages-trailing.patch
|
|
0017-IPA-Handle-NULL-members-in-process_members.patch
|
|
0018-SPEC-Print-testsuite-log-for-failed-test.patch
|
|
0019-MAN-PAGE-modified-sssd-ldap.5.xml-for-sssd-ticket-24.patch
|
|
0020-NSS-Possibility-to-use-any-shells-in-allowed_shells.patch
|
|
0021-GPO-Terminate-request-on-error.patch
|
|
0022-pyhbac-pysss-fix-reference-leaks.patch
|
|
0023-UTIL-Add-a-function-to-convert-id_t-from-a-number-or.patch
|
|
0024-BUILD-Add-a-config-option-for-sssd-user-own-private-.patch
|
|
0025-RPM-Change-file-ownership-to-sssd.sssd.patch
|
|
0026-SSSD-Load-a-user-to-run-a-service-as-from-configurat.patch
|
|
0027-SBUS-Chown-the-sbus-socket-if-needed.patch
|
|
0028-SBUS-Allow-connections-from-other-UIDs.patch
|
|
0029-BE-Own-the-sbus-socket-as-the-SSSD-user.patch
|
|
0030-MONITOR-Allow-confdb-to-be-accessed-by-nonroot-user.patch
|
|
0031-SYSDB-Allow-calling-chown-on-the-sysdb-file-from-mon.patch
|
|
0032-NSS-Run-as-a-user-specified-by-monitor.patch
|
|
0033-responder_common-Create-fd-for-pipe-in-helper.patch
|
|
0034-TEST-Unit-test-for-create_pipe_fd.patch
|
|
0035-responders-Do-not-initialize-pipe-fd-if-already-pres.patch
|
|
0036-PAM-Create-pipe-file-descriptors-before-privileges-a.patch
|
|
0037-PAM-Run-pam-responder-as-nonroot.patch
|
|
0038-AUTOFS-Run-the-autofs-responder-as-the-SSSD-user.patch
|
|
0039-PAC-Run-the-pac-responder-as-the-SSSD-user.patch
|
|
0040-SUDO-Run-the-sudo-responder-as-the-SSSD-user.patch
|
|
0041-SSH-Run-the-ssh-responder-as-the-SSSD-user.patch
|
|
0042-SBUS-Fix-error-handling-after-closing-container.patch
|
|
0043-TESTS-Add-tests-for-the-views-related-option-maps.patch
|
|
0044-RESPONDERS-refactor-create_pipe_fd.patch
|
|
0045-RESPONDERS-Don-t-hard-code-umask-value-in-utility-fu.patch
|
|
0046-RESPONDERS-Set-default-value-for-umask.patch
|
|
0047-nss-group-enumeration-fix.patch
|
|
0048-nss-preserve-service-name-in-getsrv-call.patch
|
|
0049-sdap_print_server-use-getpeername-to-get-server-addr.patch
|
|
0050-IPA-Don-t-fail-the-request-when-BE-doesn-t-find-the-.patch
|
|
0051-memberof-check-for-empty-arrays-to-avoid-segfaults.patch
|
|
0052-CONFDB-Detect-fix-misconf-opt-refresh_expired_interv.patch
|
|
0053-NSS-disable-midpoint-refresh-for-netgroups.patch
|
|
0054-IPA-use-ipaUserGroup-object-class-for-groups.patch
|
|
0055-Add-add_strings_lists-utility-function.patch
|
|
0056-IPA-inherit-ldap_user_extra_attrs-to-AD-subdomains.patch
|
|
0057-Add-parse_attr_list_ex-helper-function.patch
|
|
0058-nss-parse-user_attributes-option.patch
|
|
0059-nss-return-user_attributes-in-origbyname-request.patch
|
|
0060-sysdb_get_user_attr_with_views-add-mandatory-overrid.patch
|
|
0061-sysdb_add_overrides_to_object-add-new-parameter-and-.patch
|
|
0062-Views-apply-user-SSH-public-key-override.patch
|
|
0063-Add-test-for-sysdb_add_overrides_to_object.patch
|
|
0064-Add-ssh-pubkey-to-origbyname-request.patch
|
|
0065-BUILD-Install-ldap_child-and-as-setuid-if-running-un.patch
|
|
0066-LDAP-Move-sss_krb5_verify_keytab_ex-to-ldap_child.patch
|
|
0067-LDAP-read-the-correct-data-type-from-ldap_child-s-in.patch
|
|
0068-LDAP-Drop-privileges-after-kinit-in-ldap_child.patch
|
|
0069-UTIL-Remove-code-duplication-of-struct-io.patch
|
|
0070-UTIL-Remove-more-code-duplication-setting-up-child-p.patch
|
|
0071-IPA-Move-setting-the-SELinux-context-to-a-child-proc.patch
|
|
0072-test_sysdb_views-Use-unique-directory-for-cache.patch
|
|
0073-selinux_child-Do-not-ignore-return-values.patch
|
|
0074-IPA-Store-right-username-to-selinux-child-context.patch
|
|
0075-PAM-Remove-authtok-from-PAM-stack-with-OTP.patch
|
|
0076-Revert-LDAP-Remove-unused-option-ldap_user_uuid.patch
|
|
0077-Revert-LDAP-Remove-unused-option-ldap_group_uuid.patch
|
|
0078-Fix-uuid-defaults.patch
|
|
0079-Revert-LDAP-Change-defaults-for-ldap_user-group_obje.patch
|
|
0080-LDAP-Disable-token-groups-by-default.patch
|
|
0081-proxy-Do-not-try-to-store-same-alias-twice.patch
|
|
0082-PROXY-Preserve-service-name-in-proxy-provider.patch
|
|
0083-BUILD-Install-krb5_child-as-suid-if-running-under-no.patch
|
|
0084-KRB5-Drop-privileges-in-the-child-not-the-back-end.patch
|
|
0085-KRB5-Move-ccache-related-functions-to-krb5_ccache.c.patch
|
|
0086-KRB5-Move-checking-for-illegal-RE-to-krb5_utils.c.patch
|
|
0087-KRB5-Move-all-ccache-operations-to-krb5_child.c.patch
|
|
0088-KRB5-Do-not-switch_creds-if-already-the-specified-us.patch
|
|
0089-BUILD-Use-separate-chown-to-make-changing-ownership-.patch
|
|
0090-BUILD-Make-chown-of-files-to-sssd-user-non-fatal.patch
|
|
0091-BUILD-Touch-files-in-DESTDIR.patch
|
|
0092-BE-Become-a-regular-user-after-initialization.patch
|
|
0093-NOUPSTREAM-Default-to-root-if-sssd-user-is-not-speci.patch
|
|
0094-MAN-page-edit-for-ldap_use_tokengroups.patch
|
|
0095-sysdb-add-sysdb_search_object_by_uuid.patch
|
|
0096-ipa-add-split_ipa_anchor.patch
|
|
0097-LDAP-add-support-for-lookups-by-UUID.patch
|
|
0098-LDAP-always-store-UUID-if-available.patch
|
|
0099-ipa-add-get_be_acct_req_for_uuid.patch
|
|
0100-IPA-make-get_object_from_cache-public.patch
|
|
0101-IPA-check-overrrides-for-IPA-users-as-well.patch
|
|
0102-Enable-views-for-all-domains.patch
|
|
0103-MAN-Update-case_sensitive-Preserving-in-man-pages.patch
|
|
0104-Man-debug_timestamps-and-debug_microseconds.patch
|
|
0105-sss_client-Extract-destroying-of-mmap-cache-to-funct.patch
|
|
0106-sss_client-Fix-race-condition-in-memory-cache.patch
|
|
0107-IPA-Handle-IPA-groups-returned-from-extop-plugin.patch
|
|
0108-Fix-KRB5_CONF_PATH.patch
|
|
0109-AD-IPA-add-krb5_confd_path-configuration-option.patch
|
|
0110-test-Wrong-parameter-type-in-sss_parse_name_check.patch
|
|
0111-util-Special-case-PCRE_ERROR_NOMATCH-in-sss_parse_na.patch
|
|
0112-util-sss_get_domain_name-regex-mismatch-not-fatal.patch
|
|
0113-sysdb-add-sysdb_delete_view_tree.patch
|
|
0114-sysdb-add-sysdb_invalidate_overrides.patch
|
|
0115-views-allow-view-name-change-at-startup.patch
|
|
0116-PAM-Check-for-trusted-domain-before-sending-the-requ.patch
|
|
0117-PAM-Move-is_uid_trusted-from-pam_ctx-to-preq.patch
|
|
0118-krb5-make-krb5-provider-view-aware.patch
|
|
0119-IPA-only-update-view-data-if-it-really-changed.patch
|
|
0120-krb5-do-not-fail-if-checking-the-old-ccache-failed.patch
|
|
0121-test-avoid-leaks-in-leak-tests.patch
|
|
0122-krb5-add-copy_ccache_into_memory.patch
|
|
0123-krb5-add-copy_keytab_into_memory.patch
|
|
0124-ldap_child-copy-keytab-into-memory-to-drop-privilege.patch
|
|
0125-krb5_child-become-user-earlier.patch
|
|
0126-TESTS-Basic-child-tests.patch
|
|
0127-Add-extra_args-to-exec_child.patch
|
|
0128-KRB5-Create-the-fast-ccache-in-a-child-process.patch
|
|
0129-KRB5-Relax-DEBUG-message.patch
|
|
0130-IPA-Do-not-append-domain-name-to-fq-name.patch
|
|
0131-TESTS-Build-test_child-even-without-cmocka.patch
|
|
0132-sss_client-Work-around-glibc-bug.patch
|
|
0133-Skip-CHAUTHTOK_PRELIM-when-using-OTPs.patch
|
|
0134-PAM-Domain-names-are-case-insensitive.patch
|
|
0135-PAM-Missing-argument-to-domains-should-fail-auth.patch
|
|
0136-MAN-Misspelled-username-in-pam_trusted_users-is-not-.patch
|
|
0137-RESPONDER-Log-failures-to-resolve-user-names-in-csv_.patch
|
|
0138-KRB5-Check-FAST-kinit-errors-using-get_tgt_times.patch
|
|
0139-MAN-Clarify-ad_gpo_map-options.patch
|
|
0140-krb5_child-Initialize-REALM-earlier.patch
|
|
0141-TESTS-sysdb_delete_by_sid-test-return-value.patch
|
|
0142-NSS-nss_cmd_getbysid_search-return-ENOENT.patch
|
|
0143-SYSDB-sysdb_search_object_by_sid-returns-ENOENT.patch
|
|
0144-handle-KRB5KRB_ERR_GENERIC-as-unspecific-error.patch
|
|
0145-IPA-verify-group-memberships-of-trusted-domain-users.patch
|
|
0146-IPA-properly-handle-groups-from-different-domains.patch
|
|
0147-LDAP-retain-external-members.patch
|
|
0148-IPA-do-not-try-to-add-override-gid-twice.patch
|
|
0149-IPA-handle-GID-overrides-for-MPG-domains-on-clients.patch
|
|
0150-simple-access-provider-non-existing-object.patch
|
|
0151-libwbclient-initialize-some-return-values.patch
|
|
0152-GPO-Ignore-ENOENT-result-from-sysdb_gpo_get_gpo_resu.patch
|
|
0153-GPO-Set-libsmb-debugging-to-stderr.patch
|
|
0154-UTIL-Allow-dup-ing-child-pipe-to-a-different-FD.patch
|
|
0155-GPO-Don-t-use-stdout-for-output-in-gpo_child.patch
|
|
0156-GPO-Extract-server-hostname-after-connecting.patch
|
|
0157-IPA-add-get_be_acct_req_for_user_name.patch
|
|
0158-IPA-resolve-ghost-members-if-a-non-default-view-is-a.patch
|
|
0159-sysdb-fix-group-members-with-overridden-names.patch
|
|
0160-IPA-ipa_resolve_user_list_send-take-care-of-override.patch
|
|
0161-IPA-do-not-look-up-overrides-on-client-with-default-.patch
|
|
0162-IPA-make-version-check-more-precise.patch
|
|
0163-IPA-add-missing-break.patch
|
|
0164-IPA-process_members-optionally-return-missing-member.patch
|
|
0165-IPA-rename-ipa_s2n_get_groups_send-to-ipa_s2n_get_fq.patch
|
|
0166-IPA-resolve-missing-members.patch
|
|
0167-IPA-set-SYSDB_INITGR_EXPIRE-for-RESP_USER_GROUPLIST.patch
|
|
0168-krb5_child-Return-ERR_NETWORK_IO-on-KRB5_KDCREP_SKEW.patch
|
|
0169-krb5-fix-entry-order-in-MEMORY-keytab.patch
|
|
0170-nss-make-fill_orig-multi-value-aware.patch
|
|
0171-nss-refactor-fill_orig.patch
|
|
0172-nss-Add-original-DN-and-memberOf-to-origbyname-reque.patch
|
|
0173-Open-the-PAC-socket-from-krb5_child-before-dropping-.patch
|
|
0174-views-fix-GID-overrride-for-mpg-domains.patch
|
|
0175-IPA-properly-handle-mixed-case-trusted-domains.patch
|
|
0176-nss-fix-SID-lookups.patch
|
|
0177-sysdb-remove-ghosts-in-all-sub-domains-as-well.patch
|
|
0178-IPA-Rename-user_dom-into-obj_dom.patch
|
|
0179-IPA-resolve-IPA-group-memberships-for-AD-users.patch
|
|
0180-IPA-process_members-add-ghosts-only-once.patch
|
|
0181-IPA-Use-attr-s-dom-for-users-too.patch
|
|
0182-SELINUX-Call-setuid-0-setgid-0-to-also-set-the-real-.patch
|
|
0183-SELINUX-Set-and-reset-umask-when-caling-set_seuser-f.patch
|
|
0184-LDAP-Add-UUID-when-saving-incomplete-groups.patch
|
|
0185-IPA-Resolve-IPA-user-groups-overrideDN-in-non-defaul.patch
|
|
0186-ipa_s2n_save_objects-properly-handle-fully-qualified.patch
|
|
0187-AD-use-GC-for-SID-requests-as-well.patch
|
|
0188-fill_id-fix-LE-BE-issue-with-wrong-data-type.patch
|
|
0189-LDAP-unlink-ccname_file_dummy-if-there-is-an-error.patch
|
|
0190-selinux-Delete-existing-user-mapping-on-empty-defaul.patch
|
|
0191-ldap_child-initialized-ccname_file_dummy.patch
|
|
0192-ipa_selinux-Fix-warning-may-be-used-uninitialized.patch
|
|
0193-selinux-Handle-setup-with-empty-default-and-no-confi.patch
|
|
0194-IPA-idviews-check-if-view-name-is-set.patch
|
|
0195-IPA-make-sure-output-variable-is-set.patch
|
|
0196-IPA-set-EINVAL-if-dn-can-t-be-linearized.patch
|
|
0197-LDAP-AD-do-not-resolve-group-members-during-tokenGro.patch
|
|
0198-SDAP-Do-not-set-gid-0-twice.patch
|
|
0199-SDAP-Extract-filtering-AD-group-to-function.patch
|
|
0200-SDAP-Filter-ad-groups-in-initgroups.patch
|
|
0201-sdap-properly-handle-binary-objectGuid-attribute.patch
|
|
0202-Download-complete-groups-if-ignore_group_members-is-.patch
|
|
0203-confdb-Add-new-option-subdomain_inherit.patch
|
|
0204-DP-Add-a-function-to-inherit-DP-options-if-set.patch
|
|
0205-SDAP-Add-sdap_copy_map_entry.patch
|
|
0206-UTIL-Inherit-ignore_group_members.patch
|
|
0207-subdomains-Inherit-cleanup-period-and-tokengroup-set.patch
|
|
0208-sudo-sanitize-filter-values.patch
|
|
0209-SYSDB-Index-the-objectSIDString-attribute.patch
|
|
0210-IPA-Remove-MPG-groups-if-getgrgid-was-called-before-.patch
|