Package sssd: Information

  • Default inline alert: Version in the repository: 2.9.4-alt1

Source package: sssd
Version: 2.6.1-alt2
Build time:  Nov 23, 2021, 11:14 AM in the task #288704
Category: System/Servers
Report package bug
License: GPLv3+
Summary: System Security Services Daemon
Description: 
Provides a set of daemons to manage access to remote directories and
authentication mechanisms. It provides an NSS and PAM interface toward
the system and a pluggable backend system to connect to multiple different
account sources. It is also the basis to provide client auditing and policy
services for projects like FreeIPA.

The sssd subpackage is a meta-package that contains the deamon as well as all
the existing back ends.

List of rpms provided by this srpm:
libipa_hbac (x86_64, ppc64le, i586, armh, aarch64)
libipa_hbac-debuginfo (x86_64, ppc64le, i586, armh, aarch64)
libipa_hbac-devel (x86_64, ppc64le, i586, armh, aarch64)
libsss_autofs (x86_64, ppc64le, i586, armh, aarch64)
libsss_autofs-debuginfo (x86_64, ppc64le, i586, armh, aarch64)
libsss_certmap (x86_64, ppc64le, i586, armh, aarch64)
libsss_certmap-debuginfo (x86_64, ppc64le, i586, armh, aarch64)
libsss_certmap-devel (x86_64, ppc64le, i586, armh, aarch64)
libsss_idmap (x86_64, ppc64le, i586, armh, aarch64)
libsss_idmap-debuginfo (x86_64, ppc64le, i586, armh, aarch64)
libsss_idmap-devel (x86_64, ppc64le, i586, armh, aarch64)
libsss_nss_idmap (x86_64, ppc64le, i586, armh, aarch64)
libsss_nss_idmap-debuginfo (x86_64, ppc64le, i586, armh, aarch64)
libsss_nss_idmap-devel (x86_64, ppc64le, i586, armh, aarch64)
libsss_simpleifp (x86_64, ppc64le, i586, armh, aarch64)
libsss_simpleifp-debuginfo (x86_64, ppc64le, i586, armh, aarch64)
libsss_simpleifp-devel (x86_64, ppc64le, i586, armh, aarch64)
libsss_sudo (x86_64, ppc64le, i586, armh, aarch64)
libsss_sudo-debuginfo (x86_64, ppc64le, i586, armh, aarch64)
python3-module-ipa_hbac (x86_64, ppc64le, i586, armh, aarch64)
python3-module-ipa_hbac-debuginfo (x86_64, ppc64le, i586, armh, aarch64)
python3-module-sss (x86_64, ppc64le, i586, armh, aarch64)
python3-module-sss-debuginfo (x86_64, ppc64le, i586, armh, aarch64)
python3-module-sss-murmur (x86_64, ppc64le, i586, armh, aarch64)
python3-module-sss-murmur-debuginfo (x86_64, ppc64le, i586, armh, aarch64)
python3-module-sss_nss_idmap (x86_64, ppc64le, i586, armh, aarch64)
python3-module-sss_nss_idmap-debuginfo (x86_64, ppc64le, i586, armh, aarch64)
python3-module-sssd (x86_64, ppc64le, i586, armh, aarch64)
python3-module-sssdconfig (noarch)
sssd (x86_64, ppc64le, i586, armh, aarch64)
sssd-ad (x86_64, ppc64le, i586, armh, aarch64)
sssd-ad-debuginfo (x86_64, ppc64le, i586, armh, aarch64)
sssd-client (x86_64, ppc64le, i586, armh, aarch64)
sssd-client-debuginfo (x86_64, ppc64le, i586, armh, aarch64)
sssd-dbus (x86_64, ppc64le, i586, armh, aarch64)
sssd-dbus-debuginfo (x86_64, ppc64le, i586, armh, aarch64)
sssd-debuginfo (x86_64, ppc64le, i586, armh, aarch64)
sssd-ipa (x86_64, ppc64le, i586, armh, aarch64)
sssd-ipa-debuginfo (x86_64, ppc64le, i586, armh, aarch64)
sssd-kcm (x86_64, ppc64le, i586, armh, aarch64)
sssd-kcm-debuginfo (x86_64, ppc64le, i586, armh, aarch64)
sssd-krb5 (x86_64, ppc64le, i586, armh, aarch64)
sssd-krb5-common (x86_64, ppc64le, i586, armh, aarch64)
sssd-krb5-common-debuginfo (x86_64, ppc64le, i586, armh, aarch64)
sssd-krb5-debuginfo (x86_64, ppc64le, i586, armh, aarch64)
sssd-ldap (x86_64, ppc64le, i586, armh, aarch64)
sssd-ldap-debuginfo (x86_64, ppc64le, i586, armh, aarch64)
sssd-nfs-idmap (x86_64, ppc64le, i586, armh, aarch64)
sssd-nfs-idmap-debuginfo (x86_64, ppc64le, i586, armh, aarch64)
sssd-pac (x86_64, ppc64le, i586, armh, aarch64)
sssd-pac-debuginfo (x86_64, ppc64le, i586, armh, aarch64)
sssd-proxy (x86_64, ppc64le, i586, armh, aarch64)
sssd-proxy-debuginfo (x86_64, ppc64le, i586, armh, aarch64)
sssd-tools (x86_64, ppc64le, i586, armh, aarch64)
sssd-tools-debuginfo (x86_64, ppc64le, i586, armh, aarch64)
sssd-winbind-idmap (x86_64, ppc64le, i586, armh, aarch64)
sssd-winbind-idmap-debuginfo (x86_64, ppc64le, i586, armh, aarch64)

Maintainer: Evgeny Sinelnikov


    1. libdbus-devel
    2. libsasl2-devel
    3. libkrb5-devel
    4. libdhash-devel >= 0.4.2
    5. libselinux-devel
    6. libsemanage-devel
    7. libxml2-devel
    8. libsmbclient-devel
    9. python3-devel
    10. bind-utils
    11. libldap-devel
    12. libxslt
    13. libldb-devel >= 1.3.3
    14. libssl-devel
    15. /proc
    16. samba-devel
    17. samba-winbind
    18. nscd
    19. cifs-utils-devel
    20. nss-utils
    21. nss_wrapper
    22. softhsm
    23. diffstat
    24. docbook-dtds
    25. docbook-style-xsl
    26. doxygen
    27. libnfsidmap-devel >= 1:2.2.1-alt1
    28. glib2-devel
    29. libnl-devel
    30. libgnutls-devel
    31. findutils
    32. libnspr-devel
    33. libnss-devel
    34. po4a
    35. libcares-devel
    36. libcheck-devel
    37. rpm-build-python3
    38. libcmocka-devel >= 1.0.0
    39. libcollection-devel >= 0.5.1
    40. uid_wrapper
    41. libsystemd-devel
    42. libcurl-devel
    43. libhttp-parser-devel
    44. libp11-kit-devel
    45. libini_config-devel >= 1.3.0
    46. libpam-devel
    47. libkeyutils-devel
    48. libtalloc-devel
    49. openssh
    50. openssl
    51. libpcre2-devel
    52. pam_wrapper
    53. libpopt-devel
    54. libtdb-devel >= 1.1.3
    55. xsltproc
    56. libtevent-devel
    57. xml-utils
    58. libunistring-devel
    59. libuuid-devel

Last changed


Nov. 15, 2021 Evgeny Sinelnikov 2.6.1-alt2
- Revert reverted patch with change owner/permissions of user deskprofile path
  due it still needed.
Nov. 10, 2021 Evgeny Sinelnikov 2.6.1-alt1
- Update to 2.6.1 stable release.
- Revert "Don't change owner/permissions of user deskprofile path" patch
  due CAP_DAC_OVERRIDE was added to systemd configs in 2.4.2 release.
Nov. 7, 2021 Evgeny Sinelnikov 2.6.0-alt1
- Update to 2.6.0 (with upstream fixes from master - 7bfdd3db8e4c).
- Security issue in the sssctl command - shell command injection via the
  logs-fetch and cache-expire subcommands (fixes: CVE-2021-3621).
- pam_sss: Allow offline authentication against non-ipa-desktopprofiles aware DC
- Add filter for Active Directory trusted domains which are not trusted (one-way
  trust) or are from a different forest (direct trust). Both should be ignored
  because they are not trusted or can currently not be handled properly.