summaryrefslogtreecommitdiffstats
path: root/src/man/sssd.conf.5.xml
Commit message (Collapse)AuthorAgeFilesLines
* Add try_inotify optionStephen Gallagher2010-07-091-0/+28
| | | | | | | | There are some special cases where inotify cannot be used, even if the host OS claims that it is supported. In these cases, it should be possible to explicitly disable the use of inotify. https://fedorahosted.org/sssd/ticket/484
* Add dns_discovery_domain optionJakub Hrozek2010-06-301-0/+13
| | | | | | | | | | | | The service discovery used to use the SSSD domain name to perform DNS queries. This is not an optimal solution, for example from the point of view of authconfig. This patch introduces a new option "dns_discovery_domain" that allows to set the domain part of a DNS SRV query. If this option is not set, the default behavior is to use the domain part of the machine's hostname. Fixes: #479
* Change default min_id to 1Stephen Gallagher2010-06-091-3/+11
| | | | | Also update manpage for min_id/max_id to be more clear about how it relates to primary GID.
* Man page fixesJakub Hrozek2010-06-061-1/+1
| | | | Fixes: #496
* Add enumerate details to the manpage and examplesStephen Gallagher2010-05-201-1/+19
|
* Add dns_resolver_timeout optionStephen Gallagher2010-04-301-0/+15
| | | | | | We had a hard-coded timeout of five seconds for DNS lookups in the async resolver. This patch adds an option 'dns_resolver_timeout' to specify this value (Default: 5)
* Add userdel_cmd paramJakub Hrozek2010-04-061-0/+14
| | | | Fixes: #231
* Add simple access providerSumit Bose2010-03-081-0/+7
|
* Make filter_users and filter_groups also per-domainJakub Hrozek2010-03-081-1/+3
| | | | Fixes: #290
* Fix check for values of expiration limitsJakub Hrozek2010-02-251-2/+2
| | | | | There were inconsistencies between what sssd.conf manpage said and what the code enforces.
* Better cleanup task handlingJakub Hrozek2010-02-231-0/+15
| | | | | | | | | | | | | | | | Implements a different mechanism for cleanup task. Instead of just deleting expired entries, this patch adds a new option account_cache_expiration for domains. If an entry is expired and the last login was more days in the past that account_cache_expiration, the entry is deleted. Groups are deleted if they are expired and and no user references them (no user has memberof: attribute pointing at that group). The parameter account_cache_expiration is not LDAP-specific, so that other future backends might use the same timeout setting. Fixes: #391
* Revert "Change default for enumeration to TRUE"Stephen Gallagher2010-02-231-1/+1
| | | | This reverts commit 75a9f18ad8ac6e885ac34cdeebc4d8f8734713f8.
* Do not check entries during cleanup taskJakub Hrozek2010-02-231-1/+1
| | | | | | | Do not attempt to validate expired entries in cache, just delete them. Also increase the cache timeouts. Fixes: #331
* Restrict family lookupsJakub Hrozek2010-02-221-0/+28
| | | | | | | Adds a new option that tells resolver which address family to prefer or use exclusively. Fixes: #404
* Rename server/ directory to src/Stephen Gallagher2010-02-181-0/+808
Also update BUILD.txt