[Pkg-sssd-devel] sssd: Changes to 'master'
Timo Aaltonen
tjaalton at moszumanska.debian.org
Sat Jul 29 09:15:24 UTC 2017
BUILD.txt | 4
Makefile.am | 307
README.md | 32
configure.ac | 16
contrib/ci/configure.sh | 8
contrib/ci/deps.sh | 6
contrib/ci/run | 5
contrib/fedora/bashrc_sssd | 3
contrib/kcm_default_ccache | 12
contrib/sssd.spec.in | 242
debian/changelog | 16
debian/compat | 2
debian/control | 33
debian/libsss-certmap-dev.install | 3
debian/libsss-certmap0.install | 2
debian/rules | 6
debian/sssd-kcm.install | 5
po/POTFILES.in | 9
po/bg.po | 1300
po/ca.po | 1303
po/de.po | 1302
po/es.po | 1301
po/eu.po | 1298
po/fr.po | 1302
po/hu.po | 1301
po/id.po | 1298
po/it.po | 1301
po/ja.po | 1302
po/nb.po | 1297
po/nl.po | 1302
po/pl.po | 1302
po/pt.po | 1301
po/pt_BR.po | 1296
po/ru.po | 1301
po/sssd.pot | 1296
po/sv.po | 1302
po/tg.po | 1296
po/tr.po | 1296
po/uk.po | 1302
po/zh_CN.po | 1298
po/zh_TW.po | 1299
src/conf_macros.m4 | 16
src/confdb/confdb.c | 340
src/confdb/confdb.h | 32
src/confdb/confdb_setup.c | 5
src/config/SSSDConfig/__init__.py.in | 24
src/config/SSSDConfig/ipachangeconf.py | 7
src/config/SSSDConfigTest.py | 63
src/config/cfg_rules.ini | 60
src/config/etc/sssd.api.conf | 10
src/config/etc/sssd.api.d/sssd-ipa.conf | 2
src/config/testconfigs/sssd-valid.conf | 6
src/db/sysdb.c | 24
src/db/sysdb.h | 71
src/db/sysdb_certmap.c | 428
src/db/sysdb_domain_resolution_order.c | 169
src/db/sysdb_domain_resolution_order.h | 37
src/db/sysdb_ops.c | 307
src/db/sysdb_private.h | 10
src/db/sysdb_search.c | 91
src/db/sysdb_subdomains.c | 137
src/db/sysdb_views.c | 117
src/external/libcurl.m4 | 22
src/external/libhttp_parser.m4 | 2
src/external/libjansson.m4 | 5
src/external/libuuid.m4 | 17
src/krb5_plugin/sssd_krb5_locator_plugin.c | 15
src/lib/certmap/sss_cert_content_crypto.c | 32
src/lib/certmap/sss_cert_content_nss.c | 1014
src/lib/certmap/sss_certmap.c | 997
src/lib/certmap/sss_certmap.doxy.in | 3
src/lib/certmap/sss_certmap.exports | 13
src/lib/certmap/sss_certmap.h | 152
src/lib/certmap/sss_certmap.pc.in | 11
src/lib/certmap/sss_certmap_attr_names.c | 107
src/lib/certmap/sss_certmap_int.h | 189
src/lib/certmap/sss_certmap_krb5_match.c | 559
src/lib/certmap/sss_certmap_ldap_mapping.c | 371
src/lib/idmap/sss_idmap.c | 16
src/lib/idmap/sss_idmap.h | 6
src/lib/sifp/sss_sifp_common.c | 4
src/man/Makefile.am | 11
src/man/idmap_sss.8.xml | 2
src/man/include/seealso.xml | 6
src/man/po/br.po | 2958 +-
src/man/po/ca.po | 3075 +-
src/man/po/cs.po | 2952 +-
src/man/po/de.po | 3082 +-
src/man/po/es.po | 3038 +-
src/man/po/eu.po | 2952 +-
src/man/po/fi.po |14191 ++++++++++
src/man/po/fr.po | 3113 +-
src/man/po/ja.po | 3038 +-
src/man/po/lv.po | 2954 +-
src/man/po/nl.po | 2960 +-
src/man/po/po4a.cfg | 4
src/man/po/pt.po | 2966 +-
src/man/po/pt_BR.po | 2952 +-
src/man/po/ru.po | 2952 +-
src/man/po/sssd-docs.pot | 2884 +-
src/man/po/tg.po | 2952 +-
src/man/po/uk.po | 3131 +-
src/man/po/zh_CN.po | 2952 +-
src/man/sss-certmap.5.xml | 600
src/man/sssd-ad.5.xml | 5
src/man/sssd-ipa.5.xml | 17
src/man/sssd-kcm.8.xml | 193
src/man/sssd-ldap.5.xml | 8
src/man/sssd-secrets.5.xml | 76
src/man/sssd.conf.5.xml | 173
src/man/sssd_krb5_locator_plugin.8.xml | 5
src/monitor/monitor.c | 15
src/monitor/monitor_iface_generated.c | 5
src/monitor/monitor_iface_generated.h | 1
src/providers/ad/ad_common.c | 52
src/providers/ad/ad_common.h | 7
src/providers/ad/ad_gpo.c | 2
src/providers/ad/ad_id.c | 164
src/providers/ad/ad_subdomains.c | 89
src/providers/data_provider/dp_iface_generated.c | 5
src/providers/data_provider/dp_iface_generated.h | 1
src/providers/data_provider/dp_methods.c | 2
src/providers/data_provider/dp_target_id.c | 4
src/providers/data_provider/dp_targets.c | 2
src/providers/data_provider_be.c | 1
src/providers/files/files_ops.c | 115
src/providers/ipa/ipa_access.c | 1
src/providers/ipa/ipa_auth.c | 1
src/providers/ipa/ipa_config.h | 2
src/providers/ipa/ipa_hbac_common.c | 97
src/providers/ipa/ipa_opts.c | 2
src/providers/ipa/ipa_s2n_exop.c | 260
src/providers/ipa/ipa_subdomains.c | 735
src/providers/ipa/ipa_subdomains_ext_groups.c | 30
src/providers/ipa/ipa_subdomains_id.c | 1
src/providers/ipa/ipa_subdomains_server.c | 40
src/providers/ipa/ipa_views.c | 2
src/providers/ipa/selinux_child.c | 9
src/providers/krb5/krb5_auth.c | 68
src/providers/krb5/krb5_auth.h | 2
src/providers/krb5/krb5_child.c | 81
src/providers/krb5/krb5_child_handler.c | 20
src/providers/krb5/krb5_common.c | 1
src/providers/krb5/krb5_delayed_online_authentication.c | 7
src/providers/krb5/krb5_init.c | 3
src/providers/ldap/ldap_child.c | 1
src/providers/ldap/ldap_common.c | 2
src/providers/ldap/ldap_id.c | 79
src/providers/ldap/ldap_id_cleanup.c | 6
src/providers/ldap/ldap_options.c | 2
src/providers/ldap/sdap.c | 12
src/providers/ldap/sdap.h | 7
src/providers/ldap/sdap_access.c | 1
src/providers/ldap/sdap_async.h | 3
src/providers/ldap/sdap_async_enum.c | 9
src/providers/ldap/sdap_async_initgroups.c | 40
src/providers/ldap/sdap_async_initgroups_ad.c | 8
src/providers/ldap/sdap_async_private.h | 1
src/providers/ldap/sdap_async_users.c | 115
src/providers/ldap/sdap_child_helpers.c | 1
src/providers/ldap/sdap_domain.c | 5
src/providers/ldap/sdap_ops.c | 2
src/providers/ldap/sdap_users.h | 1
src/providers/proxy/proxy_auth.c | 2
src/providers/proxy/proxy_iface_generated.c | 5
src/providers/proxy/proxy_iface_generated.h | 1
src/python/pysss_nss_idmap.c | 103
src/resolv/async_resolv.c | 1
src/resolv/async_resolv_utils.c | 1
src/responder/common/cache_req/cache_req.c | 255
src/responder/common/cache_req/cache_req.h | 19
src/responder/common/cache_req/cache_req_domain.c | 243
src/responder/common/cache_req/cache_req_domain.h | 56
src/responder/common/cache_req/cache_req_plugin.h | 13
src/responder/common/cache_req/cache_req_private.h | 8
src/responder/common/cache_req/cache_req_result.c | 35
src/responder/common/cache_req/cache_req_search.c | 113
src/responder/common/cache_req/plugins/cache_req_enum_groups.c | 13
src/responder/common/cache_req/plugins/cache_req_enum_svc.c | 6
src/responder/common/cache_req/plugins/cache_req_enum_users.c | 13
src/responder/common/cache_req/plugins/cache_req_group_by_filter.c | 8
src/responder/common/cache_req/plugins/cache_req_group_by_id.c | 13
src/responder/common/cache_req/plugins/cache_req_group_by_name.c | 8
src/responder/common/cache_req/plugins/cache_req_host_by_name.c | 9
src/responder/common/cache_req/plugins/cache_req_initgroups_by_name.c | 8
src/responder/common/cache_req/plugins/cache_req_initgroups_by_upn.c | 5
src/responder/common/cache_req/plugins/cache_req_netgroup_by_name.c | 9
src/responder/common/cache_req/plugins/cache_req_object_by_id.c | 20
src/responder/common/cache_req/plugins/cache_req_object_by_name.c | 7
src/responder/common/cache_req/plugins/cache_req_object_by_sid.c | 5
src/responder/common/cache_req/plugins/cache_req_svc_by_name.c | 7
src/responder/common/cache_req/plugins/cache_req_svc_by_port.c | 7
src/responder/common/cache_req/plugins/cache_req_user_by_cert.c | 5
src/responder/common/cache_req/plugins/cache_req_user_by_filter.c | 8
src/responder/common/cache_req/plugins/cache_req_user_by_id.c | 13
src/responder/common/cache_req/plugins/cache_req_user_by_name.c | 12
src/responder/common/cache_req/plugins/cache_req_user_by_upn.c | 1
src/responder/common/iface/responder_iface_generated.c | 5
src/responder/common/iface/responder_iface_generated.h | 1
src/responder/common/responder.h | 45
src/responder/common/responder_common.c | 318
src/responder/common/responder_dp.c | 13
src/responder/common/responder_get_domains.c | 54
src/responder/common/responder_packet.c | 21
src/responder/common/responder_packet.h | 1
src/responder/common/responder_utils.c | 206
src/responder/ifp/ifp_groups.c | 139
src/responder/ifp/ifp_iface.c | 2
src/responder/ifp/ifp_iface.xml | 2
src/responder/ifp/ifp_iface_generated.c | 23
src/responder/ifp/ifp_iface_generated.h | 5
src/responder/ifp/ifp_private.h | 4
src/responder/ifp/ifp_users.c | 223
src/responder/ifp/ifp_users.h | 8
src/responder/ifp/ifpsrv_cmd.c | 225
src/responder/ifp/ifpsrv_util.c | 74
src/responder/kcm/kcm.c | 316
src/responder/kcm/kcm.h | 97
src/responder/kcm/kcmsrv_ccache.c | 1423 +
src/responder/kcm/kcmsrv_ccache.h | 351
src/responder/kcm/kcmsrv_ccache_be.h | 205
src/responder/kcm/kcmsrv_ccache_json.c | 930
src/responder/kcm/kcmsrv_ccache_mem.c | 805
src/responder/kcm/kcmsrv_ccache_pvt.h | 62
src/responder/kcm/kcmsrv_ccache_secrets.c | 2169 +
src/responder/kcm/kcmsrv_cmd.c | 648
src/responder/kcm/kcmsrv_op_queue.c | 326
src/responder/kcm/kcmsrv_ops.c | 1984 +
src/responder/kcm/kcmsrv_ops.h | 46
src/responder/kcm/kcmsrv_pvt.h | 101
src/responder/nss/nss_cmd.c | 90
src/responder/nss/nss_enum.c | 2
src/responder/nss/nss_get_object.c | 3
src/responder/nss/nss_iface.c | 2
src/responder/nss/nss_iface_generated.c | 5
src/responder/nss/nss_iface_generated.h | 1
src/responder/nss/nss_private.h | 11
src/responder/nss/nss_protocol.h | 12
src/responder/nss/nss_protocol_grent.c | 16
src/responder/nss/nss_protocol_pwent.c | 13
src/responder/nss/nss_protocol_sid.c | 141
src/responder/nss/nss_utils.c | 114
src/responder/nss/nsssrv.c | 2
src/responder/pam/pamsrv.c | 41
src/responder/pam/pamsrv.h | 7
src/responder/pam/pamsrv_cmd.c | 175
src/responder/pam/pamsrv_p11.c | 21
src/responder/secrets/local.c | 192
src/responder/secrets/providers.c | 155
src/responder/secrets/proxy.c | 836
src/responder/secrets/secsrv_cmd.c | 3
src/responder/secrets/secsrv_private.h | 15
src/responder/ssh/ssh_reply.c | 28
src/responder/sudo/sudosrv_get_sudorules.c | 3
src/sbus/sbus_codegen | 6
src/sbus/sssd_dbus_interface.c | 8
src/sbus/sssd_dbus_server.c | 1
src/sss_client/idmap/sss_nss_idmap.c | 110
src/sss_client/idmap/sss_nss_idmap.exports | 6
src/sss_client/idmap/sss_nss_idmap.h | 17
src/sss_client/pam_message.h | 1
src/sss_client/pam_sss.c | 132
src/sss_client/pam_test_client.c | 115
src/sss_client/ssh/sss_ssh_knownhostsproxy.c | 40
src/sss_client/sss_cli.h | 16
src/sysv/systemd/sssd-kcm.service.in | 9
src/sysv/systemd/sssd-kcm.socket.in | 10
src/tests/cmocka/common_mock_resp.c | 6
src/tests/cmocka/common_mock_resp_dp.c | 7
src/tests/cmocka/p11_nssdb/cert9.db |binary
src/tests/cmocka/p11_nssdb/key4.db |binary
src/tests/cmocka/test_cert_utils.c | 57
src/tests/cmocka/test_certmap.c | 1443 +
src/tests/cmocka/test_config_check.c | 308
src/tests/cmocka/test_fqnames.c | 2
src/tests/cmocka/test_ifp.c | 12
src/tests/cmocka/test_ipa_subdomains_server.c | 5
src/tests/cmocka/test_kcm_json_marshalling.c | 309
src/tests/cmocka/test_kcm_queue.c | 365
src/tests/cmocka/test_nss_srv.c | 580
src/tests/cmocka/test_pam_srv.c | 409
src/tests/cmocka/test_responder_cache_req.c | 62
src/tests/cmocka/test_sss_idmap.c | 11
src/tests/cmocka/test_sysdb_certmap.c | 261
src/tests/cmocka/test_sysdb_domain_resolution_order.c | 190
src/tests/cmocka/test_sysdb_subdomains.c | 25
src/tests/cmocka/test_utils.c | 2
src/tests/cwrap/Makefile.am | 1
src/tests/dlopen-tests.c | 1
src/tests/intg/Makefile.am | 4
src/tests/intg/kdc.py | 175
src/tests/intg/krb5utils.py | 160
src/tests/intg/test_files_provider.py | 90
src/tests/intg/test_kcm.py | 466
src/tests/intg/test_ldap.py | 172
src/tests/intg/test_secrets.py | 106
src/tests/intg/test_ts_cache.py | 6
src/tests/sbus_codegen_tests_generated.c | 5
src/tests/sbus_codegen_tests_generated.h | 1
src/tests/sysdb-tests.c | 162
src/tests/tcurl_test_tool.c | 400
src/tests/util-tests.c | 1
src/tools/common/sss_process.c | 1
src/tools/common/sss_tools.c | 2
src/tools/sss_cache.c | 2
src/tools/sss_signal.c | 1
src/tools/sssctl/sssctl.c | 1
src/tools/sssctl/sssctl.h | 4
src/tools/sssctl/sssctl_config.c | 6
src/tools/sssctl/sssctl_domains.c | 50
src/tools/sssctl/sssctl_logs.c | 1
src/tools/sssctl/sssctl_user_checks.c | 299
src/tools/tools_mc_util.c | 1
src/util/cert.h | 3
src/util/cert/cert_common.c | 76
src/util/cert/nss/cert.c | 9
src/util/child_common.c | 1
src/util/crypto/nss/nss_nite.c | 2
src/util/crypto/nss/nss_obfuscate.c | 2
src/util/crypto/sss_crypto.c | 4
src/util/dlinklist.h | 5
src/util/domain_info_utils.c | 46
src/util/inotify.c | 1
src/util/nscd.c | 1
src/util/safe-format-string.h | 2
src/util/server.c | 1
src/util/signal.c | 2
src/util/sss_ini.c | 53
src/util/sss_iobuf.c | 110
src/util/sss_iobuf.h | 35
src/util/sss_krb5.c | 204
src/util/sss_krb5.h | 9
src/util/sss_ldap.c | 3
src/util/sss_semanage.c | 61
src/util/string_utils.c | 12
src/util/tev_curl.c | 841
src/util/tev_curl.h | 186
src/util/usertools.c | 67
src/util/util.c | 114
src/util/util.h | 33
src/util/util_creds.h | 1
src/util/util_errors.c | 13
src/util/util_errors.h | 13
src/util/util_ext.c | 143
src/util/util_safealign.h | 6
src/util/util_watchdog.c | 2
version.m4 | 2
zanata.xml | 95
348 files changed, 101916 insertions(+), 25059 deletions(-)
New commits:
commit fec18caee41a62fee6c7364116c529bb0be5671b
Author: Timo Aaltonen <tjaalton at debian.org>
Date: Sat Jul 29 11:50:47 2017 +0300
releasing package sssd version 1.15.3-1
diff --git a/debian/changelog b/debian/changelog
index 1c0123a..394b3a9 100644
--- a/debian/changelog
+++ b/debian/changelog
@@ -1,4 +1,4 @@
-sssd (1.15.3-1) UNRELEASED; urgency=medium
+sssd (1.15.3-1) unstable; urgency=medium
* New upstream release.
* apparmor-profile: Add chown capability, allow one to notify systemd.
@@ -10,7 +10,7 @@ sssd (1.15.3-1) UNRELEASED; urgency=medium
* compat, control, rules: Bump debhelper compat to 10, drop --parallel
as it's the default now.
- -- Timo Aaltonen <tjaalton at debian.org> Thu, 22 Jun 2017 09:15:34 +0300
+ -- Timo Aaltonen <tjaalton at debian.org> Sat, 29 Jul 2017 11:50:41 +0300
sssd (1.15.2-1) unstable; urgency=medium
commit 851f67468446554d08c150275a82f74a2aa94eea
Author: Timo Aaltonen <tjaalton at debian.org>
Date: Sat Jul 29 11:50:13 2017 +0300
compat, control, rules: Bump debhelper compat to 10, drop --parallel as it's the default now.
diff --git a/debian/changelog b/debian/changelog
index 40c37ea..1c0123a 100644
--- a/debian/changelog
+++ b/debian/changelog
@@ -7,6 +7,8 @@ sssd (1.15.3-1) UNRELEASED; urgency=medium
* Add sssd-kcm.
* rules: Migrate to dh_missing.
* control: Bump policy to 4.0.0, no changes.
+ * compat, control, rules: Bump debhelper compat to 10, drop --parallel
+ as it's the default now.
-- Timo Aaltonen <tjaalton at debian.org> Thu, 22 Jun 2017 09:15:34 +0300
diff --git a/debian/compat b/debian/compat
index ec63514..f599e28 100644
--- a/debian/compat
+++ b/debian/compat
@@ -1 +1 @@
-9
+10
diff --git a/debian/control b/debian/control
index 3931a18..417c556 100644
--- a/debian/control
+++ b/debian/control
@@ -7,7 +7,7 @@ Build-Depends:
autopoint,
# check,
cifs-utils,
- debhelper (>= 9),
+ debhelper (>= 10),
dh-apparmor,
dh-autoreconf,
dh-python,
diff --git a/debian/rules b/debian/rules
index 6fa024f..8cd7fb8 100755
--- a/debian/rules
+++ b/debian/rules
@@ -1,7 +1,6 @@
#!/usr/bin/make -f
%:
dh $@ --with quilt,autoreconf,python2,python3,systemd \
- --parallel \
--builddirectory=build
DPKG_EXPORT_BUILDFLAGS = 1
commit 3d7afddc8dc927f117be3f0c309c8011ea85d35b
Author: Timo Aaltonen <tjaalton at debian.org>
Date: Sat Jul 29 11:49:23 2017 +0300
control: Bump policy to 4.0.0, no changes.
diff --git a/debian/changelog b/debian/changelog
index 0d6f484..40c37ea 100644
--- a/debian/changelog
+++ b/debian/changelog
@@ -6,6 +6,7 @@ sssd (1.15.3-1) UNRELEASED; urgency=medium
* Add libsss-certmap{0,-dev} packages.
* Add sssd-kcm.
* rules: Migrate to dh_missing.
+ * control: Bump policy to 4.0.0, no changes.
-- Timo Aaltonen <tjaalton at debian.org> Thu, 22 Jun 2017 09:15:34 +0300
diff --git a/debian/control b/debian/control
index 27f5fb5..3931a18 100644
--- a/debian/control
+++ b/debian/control
@@ -65,7 +65,7 @@ Build-Depends:
xsltproc
X-Python-Version: >= 2.6
X-Python3-Version: >= 3.3
-Standards-Version: 3.9.6
+Standards-Version: 4.0.0
Vcs-Git: git://anonscm.debian.org/pkg-sssd/sssd.git
Vcs-Browser: http://anonscm.debian.org/cgit/pkg-sssd/sssd.git
Homepage: https://pagure.io/SSSD/sssd/
commit d317b943bacd5b26dd47ae9fc8550ea384471c7f
Author: Timo Aaltonen <tjaalton at debian.org>
Date: Sat Jul 29 11:39:40 2017 +0300
fix changelog spelling
diff --git a/debian/changelog b/debian/changelog
index 3fd70e5..0d6f484 100644
--- a/debian/changelog
+++ b/debian/changelog
@@ -1,7 +1,7 @@
sssd (1.15.3-1) UNRELEASED; urgency=medium
* New upstream release.
- * apparmor-profile: Add chown capability, allow to notify systemd.
+ * apparmor-profile: Add chown capability, allow one to notify systemd.
* control: Add libcurl4-gnutls-dev and uuid-dev to build depends.
* Add libsss-certmap{0,-dev} packages.
* Add sssd-kcm.
commit fbaad1f76b9e370c623971e6e986d0d81f2460ac
Author: Timo Aaltonen <tjaalton at debian.org>
Date: Sat Jul 29 11:39:29 2017 +0300
rules: Migrate to dh_missing.
diff --git a/debian/changelog b/debian/changelog
index fa2b373..3fd70e5 100644
--- a/debian/changelog
+++ b/debian/changelog
@@ -5,6 +5,7 @@ sssd (1.15.3-1) UNRELEASED; urgency=medium
* control: Add libcurl4-gnutls-dev and uuid-dev to build depends.
* Add libsss-certmap{0,-dev} packages.
* Add sssd-kcm.
+ * rules: Migrate to dh_missing.
-- Timo Aaltonen <tjaalton at debian.org> Thu, 22 Jun 2017 09:15:34 +0300
diff --git a/debian/rules b/debian/rules
index 81b2619..6fa024f 100755
--- a/debian/rules
+++ b/debian/rules
@@ -79,7 +79,10 @@ override_dh_install:
$(CURDIR)/debian/tmp/lib/systemd/system/sssd-$$responder.socket; \
done
- dh_install --fail-missing
+ dh_install
+
+override_dh_missing:
+ dh_missing --fail-missing
override_dh_python2:
dh_python2 --no-guessing-versions
commit 5b0ed6f666883ce07e9af55f66367d2b3fd7f93f
Author: Timo Aaltonen <tjaalton at debian.org>
Date: Sat Jul 29 11:39:04 2017 +0300
Add sssd-kcm.
diff --git a/debian/changelog b/debian/changelog
index 05dce5a..fa2b373 100644
--- a/debian/changelog
+++ b/debian/changelog
@@ -4,6 +4,7 @@ sssd (1.15.3-1) UNRELEASED; urgency=medium
* apparmor-profile: Add chown capability, allow to notify systemd.
* control: Add libcurl4-gnutls-dev and uuid-dev to build depends.
* Add libsss-certmap{0,-dev} packages.
+ * Add sssd-kcm.
-- Timo Aaltonen <tjaalton at debian.org> Thu, 22 Jun 2017 09:15:34 +0300
diff --git a/debian/control b/debian/control
index 2c74d52..27f5fb5 100644
--- a/debian/control
+++ b/debian/control
@@ -163,6 +163,16 @@ Description: System Security Services Daemon -- IPA back end
Provides the IPA back end that the SSSD can utilize to fetch identity data
from and authenticate against an IPA server.
+Package: sssd-kcm
+Architecture: any
+Depends:
+ sssd-common (= ${binary:Version}),
+ ${misc:Depends},
+ ${shlibs:Depends}
+Description: System Security Services Daemon -- Kerberos KCM server implementation
+ Provides an implementation of a Kerberos KCM server. Use this package if
+ you want to use the KCM: Kerberos credentials cache.
+
Package: sssd-krb5
Architecture: any
Depends:
diff --git a/debian/sssd-kcm.install b/debian/sssd-kcm.install
new file mode 100644
index 0000000..6f2f13f
--- /dev/null
+++ b/debian/sssd-kcm.install
@@ -0,0 +1,5 @@
+lib/systemd/system/sssd-kcm.service
+lib/systemd/system/sssd-kcm.socket
+usr/lib/*/sssd/sssd_kcm
+usr/share/sssd-kcm/kcm_default_ccache
+usr/share/man/man8/sssd-kcm.8
commit e33c9eb6d8ede01fc23cb5c104fb2f294a631784
Author: Timo Aaltonen <tjaalton at debian.org>
Date: Sat Jul 29 11:30:03 2017 +0300
Add libsss-certmap{0,-dev} packages.
diff --git a/debian/changelog b/debian/changelog
index 178ca8b..05dce5a 100644
--- a/debian/changelog
+++ b/debian/changelog
@@ -3,6 +3,7 @@ sssd (1.15.3-1) UNRELEASED; urgency=medium
* New upstream release.
* apparmor-profile: Add chown capability, allow to notify systemd.
* control: Add libcurl4-gnutls-dev and uuid-dev to build depends.
+ * Add libsss-certmap{0,-dev} packages.
-- Timo Aaltonen <tjaalton at debian.org> Thu, 22 Jun 2017 09:15:34 +0300
diff --git a/debian/control b/debian/control
index e3abd1f..2c74d52 100644
--- a/debian/control
+++ b/debian/control
@@ -278,6 +278,23 @@ Description: FreeIPA HBAC Evaluator library
This package contains header files and symlinks to develop programs which will
use the libipa-hbac library.
+Package: libsss-certmap0
+Section: libs
+Architecture: any
+Depends: ${misc:Depends}, ${shlibs:Depends},
+Description: Certificate mapping library for SSSD
+ Library to map certificates to users based on rules.
+
+Package: libsss-certmap-dev
+Section: libdevel
+Architecture: any
+Depends: libsss-certmap0 (= ${binary:Version}), ${misc:Depends}
+Description: Certificate mapping library for SSSD -- development files
+ Utility library to map certificates to users based on rules.
+ .
+ This package contains header files and symlinks to develop programs which will
+ use the libsss-certmap library.
+
Package: libsss-idmap0
Section: libs
Architecture: any
diff --git a/debian/libsss-certmap-dev.install b/debian/libsss-certmap-dev.install
new file mode 100644
index 0000000..22c6c53
--- /dev/null
+++ b/debian/libsss-certmap-dev.install
@@ -0,0 +1,3 @@
+usr/include/sss_certmap.h
+usr/lib/*/libsss_certmap.so
+usr/lib/*/pkgconfig/sss_certmap.pc
diff --git a/debian/libsss-certmap0.install b/debian/libsss-certmap0.install
new file mode 100644
index 0000000..5091759
--- /dev/null
+++ b/debian/libsss-certmap0.install
@@ -0,0 +1,2 @@
+usr/lib/*/libsss_certmap.so.*
+usr/share/man/man5/sss-certmap.5
commit 4383632218d3b09e0c5702245677d004c14a548c
Author: Timo Aaltonen <tjaalton at debian.org>
Date: Sat Jul 29 11:13:15 2017 +0300
control: Add libcurl4-gnutls-dev and uuid-dev to build depends.
diff --git a/debian/changelog b/debian/changelog
index 03ec849..178ca8b 100644
--- a/debian/changelog
+++ b/debian/changelog
@@ -2,6 +2,7 @@ sssd (1.15.3-1) UNRELEASED; urgency=medium
* New upstream release.
* apparmor-profile: Add chown capability, allow to notify systemd.
+ * control: Add libcurl4-gnutls-dev and uuid-dev to build depends.
-- Timo Aaltonen <tjaalton at debian.org> Thu, 22 Jun 2017 09:15:34 +0300
diff --git a/debian/control b/debian/control
index cf628d9..e3abd1f 100644
--- a/debian/control
+++ b/debian/control
@@ -21,6 +21,7 @@ Build-Depends:
libc-ares-dev,
# libcmocka-dev [amd64 armhf i386],
libcollection-dev,
+ libcurl4-gnutls-dev,
libdbus-1-dev,
libdhash-dev,
libglib2.0-dev,
@@ -59,6 +60,7 @@ Build-Depends:
quilt,
samba-dev (>= 2:4.1.13),
systemd,
+ uuid-dev,
xml-core,
xsltproc
X-Python-Version: >= 2.6
commit f91f45e1186cbfbc20bb1b7bd07a52e531804e3d
Author: Timo Aaltonen <tjaalton at debian.org>
Date: Sat Jul 29 10:53:55 2017 +0300
bump version
diff --git a/debian/changelog b/debian/changelog
index eefd45e..03ec849 100644
--- a/debian/changelog
+++ b/debian/changelog
@@ -1,5 +1,6 @@
-sssd (1.15.2-2) UNRELEASED; urgency=medium
+sssd (1.15.3-1) UNRELEASED; urgency=medium
+ * New upstream release.
* apparmor-profile: Add chown capability, allow to notify systemd.
-- Timo Aaltonen <tjaalton at debian.org> Thu, 22 Jun 2017 09:15:34 +0300
commit b47fd11a259c50e63cd674c7cba0da3f2549cae0
Author: Jakub Hrozek <jhrozek at redhat.com>
Date: Tue Jul 25 12:07:29 2017 +0200
Updating translations for the 1.15.3 release
Reviewed-by: N/A
diff --git a/po/bg.po b/po/bg.po
index f3bcee5..8ec0021 100644
--- a/po/bg.po
+++ b/po/bg.po
@@ -8,7 +8,7 @@ msgid ""
msgstr ""
"Project-Id-Version: PACKAGE VERSION\n"
"Report-Msgid-Bugs-To: sssd-devel at lists.fedorahosted.org\n"
-"POT-Creation-Date: 2017-03-15 17:15+0100\n"
+"POT-Creation-Date: 2017-07-25 11:53+0200\n"
"PO-Revision-Date: 2014-12-14 11:44-0500\n"
"Last-Translator: Copied by Zanata <copied-by-zanata at zanata.org>\n"
"Language-Team: Bulgarian (http://www.transifex.com/projects/p/sssd/language/"
@@ -79,12 +79,12 @@ msgid "Timeout for messages sent over the SBUS"
msgstr "Изчакване за съобщения, изпратени през SBUS"
#: src/config/SSSDConfig/__init__.py.in:60
-#: src/config/SSSDConfig/__init__.py.in:184
+#: src/config/SSSDConfig/__init__.py.in:194
msgid "Regex to parse username and domain"
msgstr "Regex за намиране на потребителско име и домейн"
#: src/config/SSSDConfig/__init__.py.in:61
-#: src/config/SSSDConfig/__init__.py.in:183
+#: src/config/SSSDConfig/__init__.py.in:193
msgid "Printf-compatible format for displaying fully-qualified names"
msgstr "Printf-съвместим формат за изобразяване на пълно-квалифицирани имена"
@@ -119,88 +119,92 @@ msgstr ""
msgid "Enable or disable the implicit files domain"
msgstr ""
-#: src/config/SSSDConfig/__init__.py.in:71
-msgid "Enumeration cache timeout length (seconds)"
+#: src/config/SSSDConfig/__init__.py.in:69
+msgid "A specific order of the domains to be looked up"
msgstr ""
#: src/config/SSSDConfig/__init__.py.in:72
-msgid "Entry cache background update timeout length (seconds)"
+msgid "Enumeration cache timeout length (seconds)"
msgstr ""
#: src/config/SSSDConfig/__init__.py.in:73
-#: src/config/SSSDConfig/__init__.py.in:110
-msgid "Negative cache timeout length (seconds)"
+msgid "Entry cache background update timeout length (seconds)"
msgstr ""
#: src/config/SSSDConfig/__init__.py.in:74
-msgid "Files negative cache timeout length (seconds)"
+#: src/config/SSSDConfig/__init__.py.in:112
+msgid "Negative cache timeout length (seconds)"
msgstr ""
#: src/config/SSSDConfig/__init__.py.in:75
+msgid "Files negative cache timeout length (seconds)"
+msgstr ""
+
+#: src/config/SSSDConfig/__init__.py.in:76
msgid "Users that SSSD should explicitly ignore"
msgstr "Потребители, които SSSD изрично трябва да игнорира"
-#: src/config/SSSDConfig/__init__.py.in:76
+#: src/config/SSSDConfig/__init__.py.in:77
msgid "Groups that SSSD should explicitly ignore"
msgstr "Групи, които SSSD изрично трябва да игнорира"
-#: src/config/SSSDConfig/__init__.py.in:77
+#: src/config/SSSDConfig/__init__.py.in:78
msgid "Should filtered users appear in groups"
msgstr "Да се показват ли филтрираните потребители в групи"
-#: src/config/SSSDConfig/__init__.py.in:78
+#: src/config/SSSDConfig/__init__.py.in:79
msgid "The value of the password field the NSS provider should return"
msgstr "Стойността на полето парола, което NSS доставчикът трябва да върне"
-#: src/config/SSSDConfig/__init__.py.in:79
+#: src/config/SSSDConfig/__init__.py.in:80
msgid "Override homedir value from the identity provider with this value"
msgstr ""
-#: src/config/SSSDConfig/__init__.py.in:80
+#: src/config/SSSDConfig/__init__.py.in:81
msgid ""
"Substitute empty homedir value from the identity provider with this value"
msgstr ""
-#: src/config/SSSDConfig/__init__.py.in:81
+#: src/config/SSSDConfig/__init__.py.in:82
msgid "Override shell value from the identity provider with this value"
msgstr ""
-#: src/config/SSSDConfig/__init__.py.in:82
+#: src/config/SSSDConfig/__init__.py.in:83
msgid "The list of shells users are allowed to log in with"
msgstr ""
-#: src/config/SSSDConfig/__init__.py.in:83
+#: src/config/SSSDConfig/__init__.py.in:84
msgid ""
"The list of shells that will be vetoed, and replaced with the fallback shell"
msgstr ""
-#: src/config/SSSDConfig/__init__.py.in:84
+#: src/config/SSSDConfig/__init__.py.in:85
msgid ""
"If a shell stored in central directory is allowed but not available, use "
"this fallback"
msgstr ""
-#: src/config/SSSDConfig/__init__.py.in:85
+#: src/config/SSSDConfig/__init__.py.in:86
msgid "Shell to use if the provider does not list one"
msgstr ""
-#: src/config/SSSDConfig/__init__.py.in:86
+#: src/config/SSSDConfig/__init__.py.in:87
msgid "How long will be in-memory cache records valid"
msgstr ""
-#: src/config/SSSDConfig/__init__.py.in:87
+#: src/config/SSSDConfig/__init__.py.in:88
msgid "List of user attributes the NSS responder is allowed to publish"
msgstr ""
-#: src/config/SSSDConfig/__init__.py.in:90
+#: src/config/SSSDConfig/__init__.py.in:91
msgid "How long to allow cached logins between online logins (days)"
msgstr "Колко дни да се позволява кеширано влизане между влизания онлайн"
-#: src/config/SSSDConfig/__init__.py.in:91
+#: src/config/SSSDConfig/__init__.py.in:92
msgid "How many failed logins attempts are allowed when offline"
msgstr "Колко неуспешни опита за влизане са разрешени, когато сме офлайн"
-#: src/config/SSSDConfig/__init__.py.in:92
+#: src/config/SSSDConfig/__init__.py.in:93
msgid ""
"How long (minutes) to deny login after offline_failed_login_attempts has "
"been reached"
@@ -208,1271 +212,1311 @@ msgstr ""
"Колко време (в минути) да е забранено влизането, след достигане броя "
"неуспешни опити за влизане, когато сме офлайн"
-#: src/config/SSSDConfig/__init__.py.in:93
+#: src/config/SSSDConfig/__init__.py.in:94
msgid "What kind of messages are displayed to the user during authentication"
msgstr ""
-#: src/config/SSSDConfig/__init__.py.in:94
+#: src/config/SSSDConfig/__init__.py.in:95
msgid "Filter PAM responses send the pam_sss"
msgstr ""
-#: src/config/SSSDConfig/__init__.py.in:95
+#: src/config/SSSDConfig/__init__.py.in:96
msgid "How many seconds to keep identity information cached for PAM requests"
msgstr ""
-#: src/config/SSSDConfig/__init__.py.in:96
+#: src/config/SSSDConfig/__init__.py.in:97
msgid "How many days before password expiration a warning should be displayed"
msgstr ""
-#: src/config/SSSDConfig/__init__.py.in:97
+#: src/config/SSSDConfig/__init__.py.in:98
msgid "List of trusted uids or user's name"
msgstr ""
-#: src/config/SSSDConfig/__init__.py.in:98
+#: src/config/SSSDConfig/__init__.py.in:99
msgid "List of domains accessible even for untrusted users."
msgstr ""
-#: src/config/SSSDConfig/__init__.py.in:99
+#: src/config/SSSDConfig/__init__.py.in:100
msgid "Message printed when user account is expired."
msgstr ""
-#: src/config/SSSDConfig/__init__.py.in:100
+#: src/config/SSSDConfig/__init__.py.in:101
msgid "Message printed when user account is locked."
msgstr ""
-#: src/config/SSSDConfig/__init__.py.in:101
+#: src/config/SSSDConfig/__init__.py.in:102
msgid "Allow certificate based/Smartcard authentication."
msgstr ""
-#: src/config/SSSDConfig/__init__.py.in:102
+#: src/config/SSSDConfig/__init__.py.in:103
msgid "Path to certificate databse with PKCS#11 modules."
msgstr ""
-#: src/config/SSSDConfig/__init__.py.in:103
+#: src/config/SSSDConfig/__init__.py.in:104
msgid "How many seconds will pam_sss wait for p11_child to finish"
msgstr ""
-#: src/config/SSSDConfig/__init__.py.in:106
+#: src/config/SSSDConfig/__init__.py.in:105
+msgid "Which PAM services are permitted to contact application domains"
+msgstr ""
+
+#: src/config/SSSDConfig/__init__.py.in:108
msgid "Whether to evaluate the time-based attributes in sudo rules"
msgstr ""
-#: src/config/SSSDConfig/__init__.py.in:107
+#: src/config/SSSDConfig/__init__.py.in:109
msgid "If true, SSSD will switch back to lower-wins ordering logic"
msgstr ""
-#: src/config/SSSDConfig/__init__.py.in:113
+#: src/config/SSSDConfig/__init__.py.in:115
msgid "Whether to hash host names and addresses in the known_hosts file"
msgstr ""
-#: src/config/SSSDConfig/__init__.py.in:114
+#: src/config/SSSDConfig/__init__.py.in:116
msgid ""
"How many seconds to keep a host in the known_hosts file after its host keys "
"were requested"
msgstr ""
-#: src/config/SSSDConfig/__init__.py.in:115
+#: src/config/SSSDConfig/__init__.py.in:117
#, fuzzy
msgid "Path to storage of trusted CA certificates"
msgstr "Файл, съдържащ CA сертификати"
-#: src/config/SSSDConfig/__init__.py.in:118
+#: src/config/SSSDConfig/__init__.py.in:120
msgid "List of UIDs or user names allowed to access the PAC responder"
msgstr ""
-#: src/config/SSSDConfig/__init__.py.in:119
+#: src/config/SSSDConfig/__init__.py.in:121
msgid "How long the PAC data is considered valid"
msgstr ""
-#: src/config/SSSDConfig/__init__.py.in:122
+#: src/config/SSSDConfig/__init__.py.in:124
msgid "List of UIDs or user names allowed to access the InfoPipe responder"
msgstr ""
-#: src/config/SSSDConfig/__init__.py.in:123
+#: src/config/SSSDConfig/__init__.py.in:125
msgid "List of user attributes the InfoPipe is allowed to publish"
msgstr ""
-#: src/config/SSSDConfig/__init__.py.in:126
+#: src/config/SSSDConfig/__init__.py.in:128
msgid "The provider where the secrets will be stored in"
msgstr ""
-#: src/config/SSSDConfig/__init__.py.in:127
+#: src/config/SSSDConfig/__init__.py.in:129
msgid "The maximum allowed number of nested containers"
msgstr ""
-#: src/config/SSSDConfig/__init__.py.in:128
+#: src/config/SSSDConfig/__init__.py.in:130
msgid "The maximum number of secrets that can be stored"
msgstr ""
-#: src/config/SSSDConfig/__init__.py.in:129
+#: src/config/SSSDConfig/__init__.py.in:131
msgid "The maximum payload size of a secret in kilobytes"
msgstr ""
-#: src/config/SSSDConfig/__init__.py.in:131
+#: src/config/SSSDConfig/__init__.py.in:133
msgid "The URL Custodia server is listening on"
msgstr ""
-#: src/config/SSSDConfig/__init__.py.in:132
+#: src/config/SSSDConfig/__init__.py.in:134
msgid "The method to use when authenticating to a Custodia server"
msgstr ""
-#: src/config/SSSDConfig/__init__.py.in:133
+#: src/config/SSSDConfig/__init__.py.in:135
msgid ""
"The name of the headers that will be added into a HTTP request with the "
"value defined in auth_header_value"
msgstr ""
-#: src/config/SSSDConfig/__init__.py.in:134
+#: src/config/SSSDConfig/__init__.py.in:136
msgid "The value sssd-secrets would use for auth_header_name"
msgstr ""
-#: src/config/SSSDConfig/__init__.py.in:135
+#: src/config/SSSDConfig/__init__.py.in:137
msgid ""
"The list of the headers to forward to the Custodia server together with the "
"request"
msgstr ""
-#: src/config/SSSDConfig/__init__.py.in:136
More information about the Pkg-sssd-devel
mailing list