summaryrefslogtreecommitdiffstats
path: root/src/confdb
Commit message (Collapse)AuthorAgeFilesLines
* Add dns_discovery_domain optionJakub Hrozek2010-06-301-0/+1
| | | | | | | | | | | | The service discovery used to use the SSSD domain name to perform DNS queries. This is not an optimal solution, for example from the point of view of authconfig. This patch introduces a new option "dns_discovery_domain" that allows to set the domain part of a DNS SRV query. If this option is not set, the default behavior is to use the domain part of the machine's hostname. Fixes: #479
* Change default min_id to 1Stephen Gallagher2010-06-091-1/+1
| | | | | Also update manpage for min_id/max_id to be more clear about how it relates to primary GID.
* Skip empty attributes with warningJakub Hrozek2010-06-091-0/+4
| | | | Fixes: #488
* Add dns_resolver_timeout optionStephen Gallagher2010-04-301-0/+1
| | | | | | We had a hard-coded timeout of five seconds for DNS lookups in the async resolver. This patch adds an option 'dns_resolver_timeout' to specify this value (Default: 5)
* Add userdel_cmd paramJakub Hrozek2010-04-061-0/+1
| | | | Fixes: #231
* Fix config file error messageJakub Hrozek2010-03-221-1/+1
|
* Add forgotten \n in DEBUG statementsMartin Nagy2010-03-041-7/+7
| | | | | | Logs from confdb with missing '\n' in the DEBUG statements annoyed me so I decided to fix them. I also made a quick grep through the code and found other places so I fixed them too.
* Make confdb_init's confdb_location parameter constMartin Nagy2010-03-042-2/+2
|
* Better cleanup task handlingJakub Hrozek2010-02-231-0/+1
| | | | | | | | | | | | | | | | Implements a different mechanism for cleanup task. Instead of just deleting expired entries, this patch adds a new option account_cache_expiration for domains. If an entry is expired and the last login was more days in the past that account_cache_expiration, the entry is deleted. Groups are deleted if they are expired and and no user references them (no user has memberof: attribute pointing at that group). The parameter account_cache_expiration is not LDAP-specific, so that other future backends might use the same timeout setting. Fixes: #391
* Revert "Change default for enumeration to TRUE"Stephen Gallagher2010-02-231-1/+1
| | | | This reverts commit 75a9f18ad8ac6e885ac34cdeebc4d8f8734713f8.
* Fix file permissions of config.ldbSumit Bose2010-02-231-0/+4
|
* Check and set permissions on SBUS socketsSumit Bose2010-02-231-1/+2
|
* Restrict family lookupsJakub Hrozek2010-02-221-0/+1
| | | | | | | Adds a new option that tells resolver which address family to prefer or use exclusively. Fixes: #404
* Remove Kerberos options from confdb.hJakub Hrozek2010-02-221-8/+0
| | | | | Kerberos-specific options are pulled using dp_get_opts() and defined in Kerberos subtree. There is no need to keep these in confdb.
* Rename server/ directory to src/Stephen Gallagher2010-02-185-0/+1782
Also update BUILD.txt