Package sssd: Information

  • Default inline alert: Version in the repository: 2.9.4-alt1

Source package: sssd
Version: 2.6.1-alt2
Build time:  Nov 23, 2021, 11:14 AM in the task #288704
Category: System/Servers
Report package bug
License: GPLv3+
Summary: System Security Services Daemon
Description: 
Provides a set of daemons to manage access to remote directories and
authentication mechanisms. It provides an NSS and PAM interface toward
the system and a pluggable backend system to connect to multiple different
account sources. It is also the basis to provide client auditing and policy
services for projects like FreeIPA.

The sssd subpackage is a meta-package that contains the deamon as well as all
the existing back ends.

List of rpms provided by this srpm:
libipa_hbac (x86_64, ppc64le, i586, armh, aarch64)
libipa_hbac-debuginfo (x86_64, ppc64le, i586, armh, aarch64)
libipa_hbac-devel (x86_64, ppc64le, i586, armh, aarch64)
libsss_autofs (x86_64, ppc64le, i586, armh, aarch64)
libsss_autofs-debuginfo (x86_64, ppc64le, i586, armh, aarch64)
libsss_certmap (x86_64, ppc64le, i586, armh, aarch64)
libsss_certmap-debuginfo (x86_64, ppc64le, i586, armh, aarch64)
libsss_certmap-devel (x86_64, ppc64le, i586, armh, aarch64)
libsss_idmap (x86_64, ppc64le, i586, armh, aarch64)
libsss_idmap-debuginfo (x86_64, ppc64le, i586, armh, aarch64)
libsss_idmap-devel (x86_64, ppc64le, i586, armh, aarch64)
libsss_nss_idmap (x86_64, ppc64le, i586, armh, aarch64)
libsss_nss_idmap-debuginfo (x86_64, ppc64le, i586, armh, aarch64)
libsss_nss_idmap-devel (x86_64, ppc64le, i586, armh, aarch64)
libsss_simpleifp (x86_64, ppc64le, i586, armh, aarch64)
libsss_simpleifp-debuginfo (x86_64, ppc64le, i586, armh, aarch64)
libsss_simpleifp-devel (x86_64, ppc64le, i586, armh, aarch64)
libsss_sudo (x86_64, ppc64le, i586, armh, aarch64)
libsss_sudo-debuginfo (x86_64, ppc64le, i586, armh, aarch64)
python3-module-ipa_hbac (x86_64, ppc64le, i586, armh, aarch64)
python3-module-ipa_hbac-debuginfo (x86_64, ppc64le, i586, armh, aarch64)
python3-module-sss (x86_64, ppc64le, i586, armh, aarch64)
python3-module-sss-debuginfo (x86_64, ppc64le, i586, armh, aarch64)
python3-module-sss-murmur (x86_64, ppc64le, i586, armh, aarch64)
python3-module-sss-murmur-debuginfo (x86_64, ppc64le, i586, armh, aarch64)
python3-module-sss_nss_idmap (x86_64, ppc64le, i586, armh, aarch64)
python3-module-sss_nss_idmap-debuginfo (x86_64, ppc64le, i586, armh, aarch64)
python3-module-sssd (x86_64, ppc64le, i586, armh, aarch64)
python3-module-sssdconfig (noarch)
sssd (x86_64, ppc64le, i586, armh, aarch64)
sssd-ad (x86_64, ppc64le, i586, armh, aarch64)
sssd-ad-debuginfo (x86_64, ppc64le, i586, armh, aarch64)
sssd-client (x86_64, ppc64le, i586, armh, aarch64)
sssd-client-debuginfo (x86_64, ppc64le, i586, armh, aarch64)
sssd-dbus (x86_64, ppc64le, i586, armh, aarch64)
sssd-dbus-debuginfo (x86_64, ppc64le, i586, armh, aarch64)
sssd-debuginfo (x86_64, ppc64le, i586, armh, aarch64)
sssd-ipa (x86_64, ppc64le, i586, armh, aarch64)
sssd-ipa-debuginfo (x86_64, ppc64le, i586, armh, aarch64)
sssd-kcm (x86_64, ppc64le, i586, armh, aarch64)
sssd-kcm-debuginfo (x86_64, ppc64le, i586, armh, aarch64)
sssd-krb5 (x86_64, ppc64le, i586, armh, aarch64)
sssd-krb5-common (x86_64, ppc64le, i586, armh, aarch64)
sssd-krb5-common-debuginfo (x86_64, ppc64le, i586, armh, aarch64)
sssd-krb5-debuginfo (x86_64, ppc64le, i586, armh, aarch64)
sssd-ldap (x86_64, ppc64le, i586, armh, aarch64)
sssd-ldap-debuginfo (x86_64, ppc64le, i586, armh, aarch64)
sssd-nfs-idmap (x86_64, ppc64le, i586, armh, aarch64)
sssd-nfs-idmap-debuginfo (x86_64, ppc64le, i586, armh, aarch64)
sssd-pac (x86_64, ppc64le, i586, armh, aarch64)
sssd-pac-debuginfo (x86_64, ppc64le, i586, armh, aarch64)
sssd-proxy (x86_64, ppc64le, i586, armh, aarch64)
sssd-proxy-debuginfo (x86_64, ppc64le, i586, armh, aarch64)
sssd-tools (x86_64, ppc64le, i586, armh, aarch64)
sssd-tools-debuginfo (x86_64, ppc64le, i586, armh, aarch64)
sssd-winbind-idmap (x86_64, ppc64le, i586, armh, aarch64)
sssd-winbind-idmap-debuginfo (x86_64, ppc64le, i586, armh, aarch64)

Maintainer: Evgeny Sinelnikov


    1. doxygen
    2. openssh
    3. libtevent-devel
    4. openssl
    5. /proc
    6. libunistring-devel
    7. libuuid-devel
    8. pam_wrapper
    9. libhttp-parser-devel
    10. libcares-devel
    11. libcheck-devel
    12. findutils
    13. libcmocka-devel >= 1.0.0
    14. libcollection-devel >= 0.5.1
    15. libini_config-devel >= 1.3.0
    16. python3-devel
    17. libcurl-devel
    18. libdbus-devel
    19. libkeyutils-devel
    20. libdhash-devel >= 0.4.2
    21. libxml2-devel
    22. samba-devel
    23. samba-winbind
    24. libsasl2-devel
    25. softhsm
    26. libselinux-devel
    27. libsemanage-devel
    28. libxslt
    29. libsmbclient-devel
    30. libkrb5-devel
    31. libldap-devel
    32. libldb-devel >= 1.3.3
    33. libssl-devel
    34. bind-utils
    35. uid_wrapper
    36. rpm-build-python3
    37. cifs-utils-devel
    38. xml-utils
    39. xsltproc
    40. libnfsidmap-devel >= 1:2.2.1-alt1
    41. libnl-devel
    42. libnspr-devel
    43. libnss-devel
    44. libgnutls-devel
    45. nscd
    46. nss-utils
    47. nss_wrapper
    48. po4a
    49. glib2-devel
    50. diffstat
    51. libpam-devel
    52. libpopt-devel
    53. libp11-kit-devel
    54. docbook-dtds
    55. docbook-style-xsl
    56. libpcre2-devel
    57. libsystemd-devel
    58. libtalloc-devel
    59. libtdb-devel >= 1.1.3

Last changed


Nov. 15, 2021 Evgeny Sinelnikov 2.6.1-alt2
- Revert reverted patch with change owner/permissions of user deskprofile path
  due it still needed.
Nov. 10, 2021 Evgeny Sinelnikov 2.6.1-alt1
- Update to 2.6.1 stable release.
- Revert "Don't change owner/permissions of user deskprofile path" patch
  due CAP_DAC_OVERRIDE was added to systemd configs in 2.4.2 release.
Nov. 7, 2021 Evgeny Sinelnikov 2.6.0-alt1
- Update to 2.6.0 (with upstream fixes from master - 7bfdd3db8e4c).
- Security issue in the sssctl command - shell command injection via the
  logs-fetch and cache-expire subcommands (fixes: CVE-2021-3621).
- pam_sss: Allow offline authentication against non-ipa-desktopprofiles aware DC
- Add filter for Active Directory trusted domains which are not trusted (one-way
  trust) or are from a different forest (direct trust). Both should be ignored
  because they are not trusted or can currently not be handled properly.