Package sssd: Information

    Source package: sssd
    Version: 2.9.4-alt2
    Latest version according to Repology
    Build time:  Mar 15, 2024, 05:06 AM in the task #342749
    Category: System/Servers
    Report package bug
    License: GPLv3+
    Summary: System Security Services Daemon
    Description: 
    Provides a set of daemons to manage access to remote directories and
    authentication mechanisms. It provides an NSS and PAM interface toward
    the system and a pluggable backend system to connect to multiple different
    account sources. It is also the basis to provide client auditing and policy
    services for projects like FreeIPA.
    
    The sssd subpackage is a meta-package that contains the deamon as well as all
    the existing back ends.

    List of rpms provided by this srpm:
    libipa_hbac (x86_64, ppc64le, i586, aarch64)
    libipa_hbac-debuginfo (x86_64, ppc64le, i586, aarch64)
    libipa_hbac-devel (x86_64, ppc64le, i586, aarch64)
    libsss_autofs (x86_64, ppc64le, i586, aarch64)
    libsss_autofs-debuginfo (x86_64, ppc64le, i586, aarch64)
    libsss_certmap (x86_64, ppc64le, i586, aarch64)
    libsss_certmap-debuginfo (x86_64, ppc64le, i586, aarch64)
    libsss_certmap-devel (x86_64, ppc64le, i586, aarch64)
    libsss_idmap (x86_64, ppc64le, i586, aarch64)
    libsss_idmap-debuginfo (x86_64, ppc64le, i586, aarch64)
    libsss_idmap-devel (x86_64, ppc64le, i586, aarch64)
    libsss_nss_idmap (x86_64, ppc64le, i586, aarch64)
    libsss_nss_idmap-debuginfo (x86_64, ppc64le, i586, aarch64)
    libsss_nss_idmap-devel (x86_64, ppc64le, i586, aarch64)
    libsss_sudo (x86_64, ppc64le, i586, aarch64)
    libsss_sudo-debuginfo (x86_64, ppc64le, i586, aarch64)
    python3-module-ipa_hbac (x86_64, ppc64le, i586, aarch64)
    python3-module-ipa_hbac-debuginfo (x86_64, ppc64le, i586, aarch64)
    python3-module-sss (x86_64, ppc64le, i586, aarch64)
    python3-module-sss-debuginfo (x86_64, ppc64le, i586, aarch64)
    python3-module-sss-murmur (x86_64, ppc64le, i586, aarch64)
    python3-module-sss-murmur-debuginfo (x86_64, ppc64le, i586, aarch64)
    python3-module-sss_nss_idmap (x86_64, ppc64le, i586, aarch64)
    python3-module-sss_nss_idmap-debuginfo (x86_64, ppc64le, i586, aarch64)
    python3-module-sssd (x86_64, ppc64le, i586, aarch64)
    python3-module-sssdconfig (noarch)
    sssd (x86_64, ppc64le, i586, aarch64)
    sssd-ad (x86_64, ppc64le, i586, aarch64)
    sssd-ad-debuginfo (x86_64, ppc64le, i586, aarch64)
    sssd-client (x86_64, ppc64le, i586, aarch64)
    sssd-client-debuginfo (x86_64, ppc64le, i586, aarch64)
    sssd-dbus (x86_64, ppc64le, i586, aarch64)
    sssd-dbus-debuginfo (x86_64, ppc64le, i586, aarch64)
    sssd-debuginfo (x86_64, ppc64le, i586, aarch64)
    sssd-idp (x86_64, ppc64le, i586, aarch64)
    sssd-idp-debuginfo (x86_64, ppc64le, i586, aarch64)
    sssd-ipa (x86_64, ppc64le, i586, aarch64)
    sssd-ipa-debuginfo (x86_64, ppc64le, i586, aarch64)
    sssd-kcm (x86_64, ppc64le, i586, aarch64)
    sssd-kcm-debuginfo (x86_64, ppc64le, i586, aarch64)
    sssd-krb5 (x86_64, ppc64le, i586, aarch64)
    sssd-krb5-common (x86_64, ppc64le, i586, aarch64)
    sssd-krb5-common-debuginfo (x86_64, ppc64le, i586, aarch64)
    sssd-krb5-debuginfo (x86_64, ppc64le, i586, aarch64)
    sssd-ldap (x86_64, ppc64le, i586, aarch64)
    sssd-ldap-debuginfo (x86_64, ppc64le, i586, aarch64)
    sssd-nfs-idmap (x86_64, ppc64le, i586, aarch64)
    sssd-nfs-idmap-debuginfo (x86_64, ppc64le, i586, aarch64)
    sssd-pac (x86_64, ppc64le, i586, aarch64)
    sssd-pac-debuginfo (x86_64, ppc64le, i586, aarch64)
    sssd-passkey (x86_64, ppc64le, i586, aarch64)
    sssd-passkey-debuginfo (x86_64, ppc64le, i586, aarch64)
    sssd-proxy (x86_64, ppc64le, i586, aarch64)
    sssd-proxy-debuginfo (x86_64, ppc64le, i586, aarch64)
    sssd-tools (x86_64, ppc64le, i586, aarch64)
    sssd-tools-debuginfo (x86_64, ppc64le, i586, aarch64)
    sssd-winbind-idmap (x86_64, ppc64le, i586, aarch64)
    sssd-winbind-idmap-debuginfo (x86_64, ppc64le, i586, aarch64)

    Maintainer: Evgeny Sinelnikov



      1. /dev/pts
      2. /proc
      3. adcli
      4. bind-utils
      5. cifs-utils-devel
      6. diffstat
      7. docbook-dtds
      8. docbook-style-xsl
      9. doxygen
      10. findutils
      11. glib2-devel
      12. gnutls-utils
      13. libcares-devel
      14. libcheck-devel
      15. libcmocka-devel >= 1.0.0
      16. libcollection-devel >= 0.5.1
      17. libcurl-devel
      18. libdbus-devel
      19. libdhash-devel >= 0.4.2
      20. libfido2-devel
      21. libgnutls-devel
      22. libhttp-parser-devel
      23. libini_config-devel >= 1.3.0
      24. libjansson-devel
      25. libjose-devel
      26. python3-devel
      27. python3-module-setuptools
      28. rpm-build-python3
      29. libkeyutils-devel
      30. libkrb5-devel
      31. libldap-devel
      32. libldb-devel >= 1.3.3
      33. libnfsidmap-devel >= 1:2.2.1-alt1
      34. libnl-devel
      35. libnspr-devel
      36. libnss-devel
      37. libp11-kit-devel
      38. libpam-devel
      39. samba-devel
      40. samba-winbind
      41. libpcre2-devel
      42. softhsm
      43. libpopt-devel
      44. uid_wrapper
      45. xml-utils
      46. xsltproc
      47. libsasl2-devel
      48. libselinux-devel
      49. libsemanage-devel
      50. libsmbclient-devel
      51. libssl-devel
      52. libsystemd-devel
      53. libtalloc-devel
      54. libtdb-devel >= 1.1.3
      55. libtevent-devel
      56. libunistring-devel
      57. libuuid-devel
      58. libxml2-devel
      59. libxslt
      60. nscd
      61. nss-utils
      62. nss_wrapper
      63. openssh
      64. openssl
      65. pam_wrapper
      66. po4a

    Last changed


    March 15, 2024 Evgeny Sinelnikov 2.9.4-alt2
    - Update 2.9 major release with fixes from upstream:
      + Fix the build with Samba 4.20.
      + IFP: don't trigger backtrace in case of ACL check fail.
      + krb5_child: fix order of calloc arguments.
      + pam: fix SC auth with multiple certs and missing login name.
    Jan. 17, 2024 Evgeny Sinelnikov 2.9.4-alt1
    - Update to latest 2.9 major release in long-term maintenance (LTM) phase.
    - Fixes from upstream:
      + A crash when PAM passkey processing incorrectly handles non-passkey data.
      + A workaround was implemented to handle gracefully misbehaving applications
        that destroy internal state of SSSD client librarires.
      + An error when rotating KCM's logs was fixed.
      + Group membership handling when members are coming from different forest
        domains and using ldap token groups is prohibited.
      + Files provider was erroneously taking into consideration local_auth_policy
        config option, thus breaking smartcard authentication of local user in
        setups that didn't explicitly specify this option.
    Nov. 20, 2023 Evgeny Sinelnikov 2.9.3-alt1
    - Update to latest 2.9 major release.
      + KCM: provide mechanism to purge expired credentials.
      + Default hardening - id_provider channel defaults unencrypted with starttls.
      + sssd-sudo missing debug statement in its .service file.
      + SSSD goes offline during initgroups of trusted user if a group is
        missing SID.
      + Incorrect handling of reverse IPv6 update results in update failure.
      + sssd-2.9.2 breaks smart card authentication (on el8).
    - The proxy provider is now able to handle certificate mapping and matching
      rules and users handled by the proxy provider can be configured for local
      Smartcard authentication.
    - Passkey doesn't fail when using FreeIPA server-side authentication and
      require-user-verification=false.
    - When adding a new credential to KCM and the user has already reached their
      limit, the oldest expired credential will be removed to free some space.