<feed xmlns='http://www.w3.org/2005/Atom'>
<title>sssd.git/src/man, branch simo</title>
<subtitle>Unnamed repository; edit this file to name it for gitweb.</subtitle>
<link rel='alternate' type='text/html' href='https://fedorapeople.org/cgit/sbose/public_git/sssd.git/'/>
<entry>
<title>try primary server after retry_timeout + 1 seconds when switching to backup</title>
<updated>2012-12-18T15:40:51+00:00</updated>
<author>
<name>Pavel Březina</name>
<email>pbrezina@redhat.com</email>
</author>
<published>2012-12-17T11:04:54+00:00</published>
<link rel='alternate' type='text/html' href='https://fedorapeople.org/cgit/sbose/public_git/sssd.git/commit/?id=e148ba6dbb26a0eac162ac9a2ff550da2c883808'/>
<id>e148ba6dbb26a0eac162ac9a2ff550da2c883808</id>
<content type='text'>
https://fedorahosted.org/sssd/ticket/1679

The problem is when we are about to reset the server status, we don't
get through the timeout (30 seconds) because the "switch to primary
server" task is scheduled 30 seconds after fall back to a backup
server. Thus the server status remains "not working" and is resetted
after another 30 seconds.

We need to make sure that the server status is tried after the
timeout period. retry_timeout is currently hardcoded to 30, thus
the change in man page.
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
https://fedorahosted.org/sssd/ticket/1679

The problem is when we are about to reset the server status, we don't
get through the timeout (30 seconds) because the "switch to primary
server" task is scheduled 30 seconds after fall back to a backup
server. Thus the server status remains "not working" and is resetted
after another 30 seconds.

We need to make sure that the server status is tried after the
timeout period. retry_timeout is currently hardcoded to 30, thus
the change in man page.
</pre>
</div>
</content>
</entry>
<entry>
<title>MAN: Fix the title of sssd-sudo</title>
<updated>2012-12-13T20:01:24+00:00</updated>
<author>
<name>Jakub Hrozek</name>
<email>jhrozek@redhat.com</email>
</author>
<published>2012-12-11T17:12:43+00:00</published>
<link rel='alternate' type='text/html' href='https://fedorapeople.org/cgit/sbose/public_git/sssd.git/commit/?id=04b0ea7402f3268d382143493f5f12aa0bfe1a2b'/>
<id>04b0ea7402f3268d382143493f5f12aa0bfe1a2b</id>
<content type='text'>
https://fedorahosted.org/sssd/ticket/1710
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
https://fedorahosted.org/sssd/ticket/1710
</pre>
</div>
</content>
</entry>
<entry>
<title>sudo manpage: clarify that sudoHost may contain wildcards and not regular expression</title>
<updated>2012-12-11T13:38:57+00:00</updated>
<author>
<name>Pavel Březina</name>
<email>pbrezina@redhat.com</email>
</author>
<published>2012-12-09T16:30:39+00:00</published>
<link rel='alternate' type='text/html' href='https://fedorapeople.org/cgit/sbose/public_git/sssd.git/commit/?id=b24712874c686977465a551a3129133cec884584'/>
<id>b24712874c686977465a551a3129133cec884584</id>
<content type='text'>
https://fedorahosted.org/sssd/ticket/1690
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
https://fedorahosted.org/sssd/ticket/1690
</pre>
</div>
</content>
</entry>
<entry>
<title>MAN: Move ssh_known_hosts_timeout documentation to the correct section</title>
<updated>2012-12-05T22:55:12+00:00</updated>
<author>
<name>Jan Cholasta</name>
<email>jcholast@redhat.com</email>
</author>
<published>2012-12-05T09:58:55+00:00</published>
<link rel='alternate' type='text/html' href='https://fedorapeople.org/cgit/sbose/public_git/sssd.git/commit/?id=90f4d0cec9245d8f6838044408a38d6d31101777'/>
<id>90f4d0cec9245d8f6838044408a38d6d31101777</id>
<content type='text'>
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
</pre>
</div>
</content>
</entry>
<entry>
<title>LDAP: Make it possible to use full principal in ldap_sasl_authid again</title>
<updated>2012-11-19T21:19:29+00:00</updated>
<author>
<name>Jakub Hrozek</name>
<email>jhrozek@redhat.com</email>
</author>
<published>2012-11-19T16:34:56+00:00</published>
<link rel='alternate' type='text/html' href='https://fedorapeople.org/cgit/sbose/public_git/sssd.git/commit/?id=24c3186d01d8d1c11832baab24ab3f0de121c666'/>
<id>24c3186d01d8d1c11832baab24ab3f0de121c666</id>
<content type='text'>
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
</pre>
</div>
</content>
</entry>
<entry>
<title>MAN: document the ldap_sasl_realm option</title>
<updated>2012-11-19T21:19:29+00:00</updated>
<author>
<name>Jakub Hrozek</name>
<email>jhrozek@redhat.com</email>
</author>
<published>2012-11-19T09:32:53+00:00</published>
<link rel='alternate' type='text/html' href='https://fedorapeople.org/cgit/sbose/public_git/sssd.git/commit/?id=73291a9e0b9bcaf56e9858c7ea2226b5b0f6e26c'/>
<id>73291a9e0b9bcaf56e9858c7ea2226b5b0f6e26c</id>
<content type='text'>
The option was completely undocumented.
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
The option was completely undocumented.
</pre>
</div>
</content>
</entry>
<entry>
<title>MAN: quotation fix</title>
<updated>2012-11-16T14:39:26+00:00</updated>
<author>
<name>Ondrej Kos</name>
<email>okos@redhat.com</email>
</author>
<published>2012-11-16T14:27:07+00:00</published>
<link rel='alternate' type='text/html' href='https://fedorapeople.org/cgit/sbose/public_git/sssd.git/commit/?id=f70dc1039451863bebb1a3af5d6eb027f40de8e7'/>
<id>f70dc1039451863bebb1a3af5d6eb027f40de8e7</id>
<content type='text'>
I noticed that the proxy in auth_provider section of sssd.conf manpage
isn't quoted when all others are.
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
I noticed that the proxy in auth_provider section of sssd.conf manpage
isn't quoted when all others are.
</pre>
</div>
</content>
</entry>
<entry>
<title>Add ignore_group_members option.</title>
<updated>2012-11-15T19:03:27+00:00</updated>
<author>
<name>Paul B. Henson</name>
<email>henson@acm.org</email>
</author>
<published>2012-11-13T11:31:43+00:00</published>
<link rel='alternate' type='text/html' href='https://fedorapeople.org/cgit/sbose/public_git/sssd.git/commit/?id=59f136cd254d1acf2991c97221eb08803784777d'/>
<id>59f136cd254d1acf2991c97221eb08803784777d</id>
<content type='text'>
https://fedorahosted.org/sssd/ticket/1376
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
https://fedorahosted.org/sssd/ticket/1376
</pre>
</div>
</content>
</entry>
<entry>
<title>Run IPA subdomain provider if IPA ID provider is configured</title>
<updated>2012-11-14T09:42:34+00:00</updated>
<author>
<name>Sumit Bose</name>
<email>sbose@redhat.com</email>
</author>
<published>2012-11-09T20:31:23+00:00</published>
<link rel='alternate' type='text/html' href='https://fedorapeople.org/cgit/sbose/public_git/sssd.git/commit/?id=5063dcc5ab685dce325b13b9c1e93cee2a673e60'/>
<id>5063dcc5ab685dce325b13b9c1e93cee2a673e60</id>
<content type='text'>
To make configuration easier the IPA subdomain provider should be always
loaded if the IPA ID provider is configured and the subdomain provider
is not explicitly disabled. But to avoid the overhead of regular
subdomain requests in setups where no subdomains are used the IPA
subdomain provider should behave differently if configured explicit or
implicit.

If the IPA subdomain provider is configured explicitly, i.e.
'subdomains_provider = ipa' can be found in the domain section of
sssd.conf subdomain request are always send to the server if needed.

If it is configured implicitly and a request to the server fails
with an indication that the server currently does not support subdomains
at all, e.g. is not configured to handle trust relationships, a new
request will be only send to the server after a long timeout or after
a going-online event.

To be able to make this distinction this patch save the configuration
status to the subdomain context.

Fixes https://fedorahosted.org/sssd/ticket/1613
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
To make configuration easier the IPA subdomain provider should be always
loaded if the IPA ID provider is configured and the subdomain provider
is not explicitly disabled. But to avoid the overhead of regular
subdomain requests in setups where no subdomains are used the IPA
subdomain provider should behave differently if configured explicit or
implicit.

If the IPA subdomain provider is configured explicitly, i.e.
'subdomains_provider = ipa' can be found in the domain section of
sssd.conf subdomain request are always send to the server if needed.

If it is configured implicitly and a request to the server fails
with an indication that the server currently does not support subdomains
at all, e.g. is not configured to handle trust relationships, a new
request will be only send to the server after a long timeout or after
a going-online event.

To be able to make this distinction this patch save the configuration
status to the subdomain context.

Fixes https://fedorahosted.org/sssd/ticket/1613
</pre>
</div>
</content>
</entry>
<entry>
<title>Always start PAC responder if IPA ID provider is configured</title>
<updated>2012-11-14T09:42:34+00:00</updated>
<author>
<name>Sumit Bose</name>
<email>sbose@redhat.com</email>
</author>
<published>2012-11-13T20:21:38+00:00</published>
<link rel='alternate' type='text/html' href='https://fedorapeople.org/cgit/sbose/public_git/sssd.git/commit/?id=778491bebee536a196afc29b0d9953843a5374b2'/>
<id>778491bebee536a196afc29b0d9953843a5374b2</id>
<content type='text'>
Since the PAC responder is used during the authentication of users from
trusted realms it is started automatically if the IPA ID provider is
configured for a domain to simplify the configuration.

Fixes https://fedorahosted.org/sssd/ticket/1613
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
Since the PAC responder is used during the authentication of users from
trusted realms it is started automatically if the IPA ID provider is
configured for a domain to simplify the configuration.

Fixes https://fedorahosted.org/sssd/ticket/1613
</pre>
</div>
</content>
</entry>
</feed>
