Commit message (Collapse) | Author | Age | Files | Lines | |
---|---|---|---|---|---|
* | SUDO Integration - fixed memory leak in sdap_sudo_handler() | Pavel Březina | 2011-12-20 | 1 | -0/+1 |
| | |||||
* | SUDO Integration - be_sudo_req removed from sudo_ctx | Pavel Březina | 2011-12-20 | 2 | -2/+0 |
| | |||||
* | Pass sdap_id_ctx to online check from IPA provider | Jakub Hrozek | 2011-12-19 | 5 | -18/+56 |
| | |||||
* | Securely set umask when using mkstemp | Stephen Gallagher | 2011-12-19 | 2 | -0/+6 |
| | | | | Coverity 12394, 12395, 12396, 12397 and 12398 | ||||
* | Move child_common routines to util | Stephen Gallagher | 2011-12-19 | 14 | -856/+12 |
| | |||||
* | Add common SIGCHLD handling for providers. | Pavel Zuna | 2011-12-19 | 4 | -6/+260 |
| | |||||
* | Logically dead code in sdap_nested_group_lookup_group | Pavel Březina | 2011-12-16 | 1 | -1/+1 |
| | | | | https://fedorahosted.org/sssd/ticket/1113 | ||||
* | SUDO integration - LDAP provider | Pavel Březina | 2011-12-16 | 4 | -0/+657 |
| | |||||
* | SUDO Integration - LDAP provider - save sudo rules functions | Jakub Hrozek | 2011-12-16 | 2 | -0/+125 |
| | |||||
* | SUDO Integration - LDAP configuration options | Pavel Březina | 2011-12-16 | 6 | -3/+150 |
| | |||||
* | SUDO integration - data provider backend handler | Pavel Březina | 2011-12-16 | 3 | -0/+165 |
| | |||||
* | Export the function to convert ldb_result to sysdb_attrs | Jakub Hrozek | 2011-12-16 | 2 | -30/+1 |
| | | | | It will be reused later in the sudo responder | ||||
* | Use the case sensitivity flag in the proxy provider | Jakub Hrozek | 2011-12-16 | 3 | -153/+181 |
| | |||||
* | Use the case sensitivity flag in the simple access provider | Jakub Hrozek | 2011-12-16 | 1 | -4/+15 |
| | |||||
* | Use the case sensitivity flag in the LDAP provider | Jakub Hrozek | 2011-12-16 | 6 | -11/+31 |
| | |||||
* | Refactor saving sdap entities | Jakub Hrozek | 2011-12-16 | 5 | -179/+146 |
| | | | | | There was too much code duplication between sdap_save_{user,group,netgroup}. This patch removes the most egregious ones. | ||||
* | Support search bases in netgroup members translation | Pavel Březina | 2011-12-14 | 1 | -1/+11 |
| | |||||
* | Support search bases in RFC2307bis enumeration | Pavel Březina | 2011-12-14 | 1 | -10/+145 |
| | | | | https://fedorahosted.org/sssd/ticket/960 | ||||
* | Add sdap_connection_expire_timeout option | Stephen Gallagher | 2011-12-12 | 5 | -3/+18 |
| | | | | https://fedorahosted.org/sssd/ticket/1036 | ||||
* | Fix uninitialized value error in ipa_netgroups.c | Stephen Gallagher | 2011-12-12 | 1 | -0/+1 |
| | | | | | | | DEBUG message can print an unitialized value if the first netgroup has no members. Coverity 12382 | ||||
* | Fixed IPA netgroup processing | Jan Zeleny | 2011-12-09 | 3 | -2/+7 |
| | | | | | | | | In case IPA netgroup had indirect member hosts, they wouldn't be detected. This patch also modifies debug messages for easier debugging in the future. | ||||
* | LDAP: Fix missing break statements in force_tls | Stephen Gallagher | 2011-12-08 | 1 | -6/+12 |
| | | | | Also add a default case to protect against bad input | ||||
* | LDAP provider: Error while setting the nocanon option should not be fatal | Jakub Hrozek | 2011-12-08 | 1 | -3/+9 |
| | | | | https://fedorahosted.org/sssd/ticket/1100 | ||||
* | Add ldap_sasl_minssf option | Jan Zeleny | 2011-12-08 | 5 | -1/+21 |
| | | | | https://fedorahosted.org/sssd/ticket/1075 | ||||
* | Allow using Glib for UTF8 support | Stephen Gallagher | 2011-12-05 | 1 | -33/+11 |
| | |||||
* | Use dereference during IPA provider initgroups | Jakub Hrozek | 2011-11-30 | 1 | -40/+149 |
| | | | | https://fedorahosted.org/sssd/ticket/1099 | ||||
* | Fix two small bugs in group dereferencing | Jakub Hrozek | 2011-11-29 | 1 | -2/+5 |
| | |||||
* | Add ipa_hbac_support_srchost option to IPA provider | Jan Zeleny | 2011-11-29 | 6 | -36/+151 |
| | | | | | don't fetch all host groups if this option is false https://fedorahosted.org/sssd/ticket/1078 | ||||
* | IPA migration fixes | Jakub Hrozek | 2011-11-29 | 3 | -97/+141 |
| | | | | | | | * use the id connection for looking up the migration flag * force TLS on the password based authentication connection https://fedorahosted.org/sssd/ticket/924 | ||||
* | Provide means of forcing TLS and GSSAPI enabled/disabled for sdap connections | Jakub Hrozek | 2011-11-29 | 5 | -11/+43 |
| | |||||
* | LDAP: Try next failover server on any error | Stephen Gallagher | 2011-11-29 | 1 | -9/+5 |
| | |||||
* | Fixed logically dead code in netgroup processing | Jan Zeleny | 2011-11-28 | 1 | -1/+1 |
| | |||||
* | Fixed uninitialized pointer read in netgroups processing | Jan Zeleny | 2011-11-28 | 1 | -0/+6 |
| | |||||
* | Fix sdap_id_ctx/ipa_id_ctx mismatch in IPA provider | Jakub Hrozek | 2011-11-25 | 4 | -4/+18 |
| | | | | | This was causing a segfault during HBAC processing and any ID lookups except for netgroups | ||||
* | Added IPA account info handler | Jan Zeleny | 2011-11-23 | 3 | -1/+373 |
| | | | | | Currently it is only handling netgroups by itself, other requests are forwarded to LDAP provider. | ||||
* | Added support for fetching netgroups in IPA provider | Jan Zeleny | 2011-11-23 | 1 | -0/+992 |
| | |||||
* | New IPA ID context | Jan Zeleny | 2011-11-23 | 3 | -22/+37 |
| | |||||
* | Added and modified options for IPA netgroups | Jan Zeleny | 2011-11-23 | 2 | -24/+69 |
| | |||||
* | Modified sdap_parse_search_base() | Jan Zeleny | 2011-11-23 | 4 | -16/+14 |
| | |||||
* | Renamed some LDAP routines | Jan Zeleny | 2011-11-23 | 6 | -41/+49 |
| | | | | | These were renamed just ot make sure they are not mistook for IPA netgroup functions. | ||||
* | Set more strict permissions on keyring | Simo Sorce | 2011-11-22 | 1 | -1/+1 |
| | | | | | We want to confine access to the keyring to the current process and not let root easily peek into the keyring contents. | ||||
* | Fixed unchecked value of setenv() in check_and_export_options() | Jan Zeleny | 2011-11-22 | 1 | -2/+5 |
| | | | | https://fedorahosted.org/sssd/ticket/1080 | ||||
* | Cleanup: Remove unused parameters | Jakub Hrozek | 2011-11-22 | 25 | -119/+38 |
| | |||||
* | Prevent printing NULL in several places of LDAP provider | Jakub Hrozek | 2011-11-18 | 2 | -5/+9 |
| | |||||
* | Use one transaction instead of two during RFC2307bis group processing | Jakub Hrozek | 2011-11-11 | 1 | -31/+55 |
| | | | | https://fedorahosted.org/sssd/ticket/1054 | ||||
* | Squash transactions in sdap_initgr_common_store | Jakub Hrozek | 2011-11-11 | 1 | -6/+25 |
| | | | | https://fedorahosted.org/sssd/ticket/1053 | ||||
* | LDAP: Remove redundant groups from the lookup list | Stephen Gallagher | 2011-11-08 | 1 | -23/+0 |
| | |||||
* | Fixed empty loginShell in proxy provider | Jan Zeleny | 2011-11-07 | 1 | -4/+32 |
| | | | | https://fedorahosted.org/sssd/ticket/892 | ||||
* | Use correct state struct in sdap_initgr_rfc2307bis_next_base | Jakub Hrozek | 2011-11-07 | 1 | -2/+3 |
| | |||||
* | Fix segfault in sdap_get_initgr_user | Jakub Hrozek | 2011-11-07 | 1 | -1/+2 |
| |