summaryrefslogtreecommitdiffstats
Commit message (Expand)AuthorAgeFilesLines
* Do not attempt to close() a file descriptor < 0sssd-1.5.1-52.el6Stephen Gallagher2011-09-201-1/+3
* Fix uninitialized pointer read in sdap_gssapi_get_default_realm()Jakub Hrozek2011-09-201-1/+1
* MONITOR: Correctly detect lack of response from servicesStephen Gallagher2011-09-201-21/+26
* Use sss_ldap_err2string() instead of ldap_err2string()sssd-1.5.1-51.el6Pavel Březina2011-09-125-40/+54
* Improve error message for LDAP password constraint violationJakub Hrozek2011-09-123-16/+29
* Do not access memory out of boundsSumit Bose2011-09-071-2/+2
* Add option to specify the kerberos replay cache dirStephen Gallagher2011-09-0710-0/+77
* HBAC: Properly skip all non-group memberOf entriesStephen Gallagher2011-08-291-1/+2
* Add LDAP provider option to set LDAP_OPT_X_SASL_NOCANONJakub Hrozek2011-08-298-3/+33
* HBAC: Use of hostgroups for targethost or sourcehost was brokenStephen Gallagher2011-08-291-4/+4
* HBAC: Handle saving groups that have no membersStephen Gallagher2011-08-291-7/+21
* Improve password policy error code and messageSumit Bose2011-08-291-4/+9
* Use sysdb attribute name for GID, not LDAP attributeStephen Gallagher2011-08-291-3/+3
* Return the first value of name if the multivalued name attribute does not mat...Jakub Hrozek2011-08-291-3/+4
* Use the default Kerberos realm for LDAP with GSSAPI authJakub Hrozek2011-08-291-3/+55
* Add vetoed_shells optionsssd-1.5.1-47.el6John Hodrien2011-08-086-15/+44
* Fix returning groups when gidNumber attribute is not orderedJakub Hrozek2011-08-043-4/+10
* pyhbac: Do not convert int to boolJakub Hrozek2011-08-041-2/+11
* Explicitly ignore groups with gidNumber=0Jakub Hrozek2011-08-042-11/+18
* Set gidNumber of non-posix groups to 0 even on updatesJakub Hrozek2011-08-041-8/+44
* Fix indexing of skipped groupsJakub Hrozek2011-08-041-2/+4
* sss_client: avoid leaking file descriptorsSimo Sorce2011-08-042-0/+15
* Provide python bindings for the HBAC evaluator libraryJakub Hrozek2011-08-048-4/+2694
* Rewrite HBAC rule evaluatorStephen Gallagher2011-08-0423-1702/+4592
* Request password control unconditionally during bindJakub Hrozek2011-08-041-6/+6
* Do not add a NULL host parsed from LDAP URIJakub Hrozek2011-08-041-1/+8
* Use ares_search instead of ares_query for hostname resolutionsssd-1.5.1-43.el6Jakub Hrozek2011-07-131-1/+1
* ipa_dyndns: Use sockaddr_storage for storing IP addressesJakub Hrozek2011-07-131-12/+17
* Fix TLS/SSL validation after switch to ldap_init_fdSumit Bose2011-07-1313-72/+558
* Honor the TTL value of SRV record lookupsJakub Hrozek2011-07-1311-221/+903
* Delete cached ccache file if password is expiredSumit Bose2011-07-131-8/+63
* Fall back to polling when inotify failsJan Zeleny2011-07-131-28/+68
* Do not check pwdAttributeSumit Bose2011-07-131-9/+0
* Handle non-POSIX groups in nestingsssd-1.5.1-40.el6Jan Zeleny2011-06-027-52/+132
* Support overriding attribute values locallyJakub Hrozek2011-06-0211-5/+414
* Properly support IPv6 in LDAP URIs for IPA and LDAP providersJakub Hrozek2011-06-027-23/+121
* Add online callback only once for TGT renewalSumit Bose2011-06-021-25/+44
* Fix typo in initgroups negative cache checkStephen Gallagher2011-06-021-1/+1
* Changing default to Default for consistencyKaushik Banerjee2011-06-021-1/+1
* Clear up -Wunused-but-set-variable warningsStephen Gallagher2011-06-023-8/+4
* Add more detail to ldap_uri manpage entrysssd-1.5.1-38.el6Stephen Gallagher2011-05-271-1/+13
* Sanitize username during initgroups callsssd-1.5.1-37.el6Sumit Bose2011-05-251-1/+7
* Always generate kpasswdinfo filesssd-1.5.1-36.el6Stephen Gallagher2011-05-241-2/+1
* Set c-ares to retry nameserversJakub Hrozek2011-05-241-1/+1
* IPA Provider: don't fail if user is not a member of any groupsStephen Gallagher2011-05-241-2/+5
* Enable paging support for LDAPStephen Gallagher2011-05-249-26/+148
* simple provider: Don't treat primary GID lookup failures as fatalStephen Gallagher2011-05-241-13/+19
* Only save members for successfully saved groupsJakub Hrozek2011-05-241-2/+17
* Make "password" the default for ldap_default_authtok_typeStephen Gallagher2011-05-242-1/+4
* clients: use poll instead of selectsssd-1.5.1-34.el6Simo Sorce2011-05-031-9/+6