summaryrefslogtreecommitdiffstats
Commit message (Expand)AuthorAgeFilesLines
* LDAP/AD: do not resolve group members during tokenGroups requestrhel7.0Sumit Bose2015-03-179-18/+64
* LDAP: Enable tokenGroups with Windows Server 2003Jakub Hrozek2014-10-141-2/+2
* LDAP: Fall back to functional level of Windows Server 2003Jakub Hrozek2014-10-141-0/+1
* LDAP: Add Windows Server 2012 R2 functional levelJakub Hrozek2014-10-142-1/+3
* IPA: Use GC for group lookups in server modeJakub Hrozek2014-10-141-5/+9
* Ignore referrals in deref and ASQ, tooJakub Hrozek2014-10-141-2/+18
* LDAP: Ignore returned referrals if referral support is disabledJakub Hrozek2014-10-143-3/+18
* IPA: handle searches by SID in apply_subdomain_homedirJakub Hrozek2014-10-141-4/+9
* tests: Remove tests that check creating public directoriesJakub Hrozek2014-05-211-121/+0
* ipa subdomains provider: make sure search by SID works for homedirAlexander Bokovoy2014-05-211-5/+15
* AD Provider: bugfix use-after-freePavel Reichl2014-05-131-2/+7
* AD Provider: bug-fix uninitialized variablePavel Reichl2014-05-131-1/+2
* AD: Do not remove non-root domains when looking up root domainJakub Hrozek2014-05-131-3/+22
* IPA: Fix SELinux mapping order memory hierarchyJakub Hrozek2014-04-041-8/+8
* AD: connect to forest root when downloading the list of subdomainsJakub Hrozek2014-04-021-9/+363
* IPA: Use function sysdb_attrs_get_el in safe wayLukas Slebodnik2014-04-011-10/+7
* KRB5: Do not attempt to get a TGT after a password change using OTPJakub Hrozek2014-04-014-3/+52
* krb5-child: add revert_changepw_options()Sumit Bose2014-03-211-0/+22
* krb5_client: rename krb5_set_canonicalize() to set_canonicalize_option()Sumit Bose2014-03-211-16/+16
* krb5-child: extract lifetime settings into set_lifetime_options()Sumit Bose2014-03-211-34/+55
* krb5_child: remove unused option lifetime_str from k5c_setup_fast()Sumit Bose2014-03-211-6/+3
* IPA: Write SELinux usernames in the right caseJakub Hrozek2014-03-131-5/+21
* AD: Continue if sssd failes to check extra membersLukas Slebodnik2014-03-131-0/+1
* IPA/KRB5: handle KRB5_PROG_ETYPE_NOSUPP during IPA password migrationSumit Bose2014-03-121-0/+4
* IPA: Use the correct domain when processing SELinux rulesJakub Hrozek2014-03-111-10/+16
* MAN: Clarify the GC support a bitJakub Hrozek2014-03-111-5/+13
* AD: Only connect to GC for subdomain usersJakub Hrozek2014-03-111-0/+17
* IPA: Use GC for AD initgroup requestsSumit Bose2014-03-101-6/+15
* Fix krb5 changepw when FAST-only preauth methods are used (like OTP)Nathaniel McCallum2014-03-101-34/+6
* IPA: Do not save intermediate data to sysdbJakub Hrozek2014-03-051-28/+28
* ipa-server-mode: use lower-case user name for home dirSumit Bose2014-03-041-1/+10
* SUDO: AD providerSumit Bose2014-03-048-7/+122
* config API: add missing subdomain target to AD provider testSumit Bose2014-03-041-1/+1
* libsss_idmap: bump version-infoSumit Bose2014-02-261-1/+1
* DOC: Fix names of arguments in doxygen commentsLukas Slebodnik2014-02-263-5/+5
* MAN: Clarify that changing ID mapping options might require purging the cacheJakub Hrozek2014-02-261-0/+42
* MAN: Clarify the ldap_access_filter option furtherJakub Hrozek2014-02-261-4/+5
* DP: Provide separate dp_copy_defaults functionJakub Hrozek2014-02-266-22/+476
* OPTS: Allow using defaults for blobsJakub Hrozek2014-02-261-0/+3
* IPA: check ranges for collisions before saving themSumit Bose2014-02-261-20/+63
* IPA: refactor idmap code and add testSumit Bose2014-02-264-147/+373
* IDMAP: add sss_idmap_check_collision(_ex)Sumit Bose2014-02-263-37/+244
* UTIL: Sanitize whitespaces.Lukas Slebodnik2014-02-261-0/+10
* LDAP: Setup periodic task only once.Lukas Slebodnik2014-02-261-13/+41
* IPA: Don't fail if apply_subdomain_homedir returns ENOENTJakub Hrozek2014-02-211-1/+1
* IPA: Don't call tevent_req_post outside _sendJakub Hrozek2014-02-211-1/+0
* MAN: Clarify the new krb5_use_fast IPA defaultJakub Hrozek2014-02-172-1/+35
* IPA: default krb5_fast_principal to host/$client@$realmPavel Březina2014-02-171-3/+5
* IPA: Default to krb5_use_fast=tryJakub Hrozek2014-02-172-1/+28
* SSS_CACHE: Reset the initgroups attribute when resetting usersJakub Hrozek2014-02-171-0/+6