* d/p/0001-LDAP-don-t-close-LDAP-socket-twice.patch: don't close LDAP
socket twice.
* d/p/0001-Fix-man-page-reference-in-systemd-service-file.patch: the
manpage is realm(8), not realmd(8)
* d/p/0001-Use-current-idmap-options-for-smb.conf.patch: use the
idmap options in smb.conf for modern versions of samba (LP: #1894153)
* d/p/0001-Find-NetBIOS-name-in-keytab-while-leaving.patch: find
NetBIOS name in keytab while leaving the domain (LP: #1894340)
* d/p/0001-Fix-issues-found-by-Coverity.patch: fix issues found by
Coverity
* d/p/0002-Change-qualified-names-default-for-IPA.patch: change
qualified names default for IPA
* d/p/0003-discover-try-to-get-domain-name-from-hostname.patch: if
there is no domain name returned by DHCP check if the hostname
contains a domain part and use this to discover a realm.
* d/p/0001-IPA-do-not-call-sssd-enable-logins.patch: IPA: do not call
sssd-enable-logins
* d/p/0001-Set-NEWEST-flag-when-resolving-packages-with-Package.patch:
install the latest version of a package when resolving packages with
PackageKit
* d/p/0001-doc-make-sure-cross-reference-ids-are-predictable.patch: make
sure cross-reference ids are predictable
* d/p/0002-tools-remove-duplicated-va_start.patch: remove duplicated
va_start()
* d/p/0003-service-remove-dead-code.patch: remove unused code
* d/p/0004-service-check-return-value-of-fcntl.patch: check return
value of fcntl()
* d/p/0005-service-avoid-dereference-of-a-null-pointer.patch: avoid
dereference of a null pointer
* d/p/0006-service-avoid-dereferencing-a-NULL-pointer.patch: avoid
dereferencing a NULL pointer
* d/p/0001-Add-missing-xsl-file-to-Makefile.am.patch: add missing xsl
file to Makefile.am
* d/p/0002-configure-do-not-inherit-DISTRO-from-the-environment.patch:
do not inherit DISTRO from the environment
* d/p/0003-doc-extend-user-principal-section.patch: doc: extend
user-principal section
* d/p/0004-doc-fix-discover-name-only.patch: doc: fix discover
name-only parameter
* d/p/0005-doc-add-see-also-to-man-pages.patch: doc: add see also to
man pages
* d/p/0006-doc-extend-description-of-config-handling.patch: doc: extend
description of config handling
* d/p/0007-service-use-kerberos-method-secrets-and-keytab.patch: when
using Samba with Winbind, set "kerberos method" to "secrets and keytab"
* d/p/install-libnss-winbind.patch: install libnss-winbind when needed
(LP: #1894150)
* d/p/dont-add-services-line.patch: in Ubuntu and Debian, the sssd_*
services are socket activated and don't need a "services" line in
sssd.conf (LP: #1880157)
* d/p/0004-service-use-additional-dns-hostnames-with-net-ads-jo.patch:
when using samba to join a domain, and the client is from a different
domain, also set "additional dns hostnames"
* d/p/0002-Use-startTLS-with-FreeIPA.patch: attempt StartTLS first
when talking to FreeIPA
* d/p/0003-service-use-net-ads-join-with-k-for-user-join-as-wel.patch:
when joining using samba, try kerberos auth first and fallback to
ntlm as before
This bug was fixed in the package realmd - 0.16.3-3ubuntu1
---------------
realmd (0.16.3-3ubuntu1) groovy; urgency=medium
* d/p/0001- LDAP-don- t-close- LDAP-socket- twice.patch: don't close LDAP Fix-man- page-reference- in-systemd- service- file.patch: the Use-current- idmap-options- for-smb. conf.patch: use the Find-NetBIOS- name-in- keytab- while-leaving. patch: find Fix-issues- found-by- Coverity. patch: fix issues found by Change- qualified- names-default- for-IPA. patch: change discover- try-to- get-domain- name-from- hostname. patch: if IPA-do- not-call- sssd-enable- logins. patch: IPA: do not call enable- logins Set-NEWEST- flag-when- resolving- packages- with-Package. patch: doc-make- sure-cross- reference- ids-are- predictable. patch: make tools-remove- duplicated- va_start. patch: remove duplicated service- remove- dead-code. patch: remove unused code service- check-return- value-of- fcntl.patch: check return service- avoid-dereferen ce-of-a- null-pointer. patch: avoid service- avoid-dereferen cing-a- NULL-pointer. patch: avoid Add-missing- xsl-file- to-Makefile. am.patch: add missing xsl configure- do-not- inherit- DISTRO- from-the- environment. patch: doc-extend- user-principal- section. patch: doc: extend doc-fix- discover- name-only. patch: doc: fix discover doc-add- see-also- to-man- pages.patch: doc: add see also to doc-extend- description- of-config- handling. patch: doc: extend service- use-kerberos- method- secrets- and-keytab. patch: when libnss- winbind. patch: install libnss-winbind when needed add-services- line.patch: in Ubuntu and Debian, the sssd_* service- use-additional- dns-hostnames- with-net- ads-jo. patch: Use-startTLS- with-FreeIPA. patch: attempt StartTLS first service- use-net- ads-join- with-k- for-user- join-as- wel.patch:
socket twice.
* d/p/0001-
manpage is realm(8), not realmd(8)
* d/p/0001-
idmap options in smb.conf for modern versions of samba (LP: #1894153)
* d/p/0001-
NetBIOS name in keytab while leaving the domain (LP: #1894340)
* d/p/0001-
Coverity
* d/p/0002-
qualified names default for IPA
* d/p/0003-
there is no domain name returned by DHCP check if the hostname
contains a domain part and use this to discover a realm.
* d/p/0001-
sssd-
* d/p/0001-
install the latest version of a package when resolving packages with
PackageKit
* d/p/0001-
sure cross-reference ids are predictable
* d/p/0002-
va_start()
* d/p/0003-
* d/p/0004-
value of fcntl()
* d/p/0005-
dereference of a null pointer
* d/p/0006-
dereferencing a NULL pointer
* d/p/0001-
file to Makefile.am
* d/p/0002-
do not inherit DISTRO from the environment
* d/p/0003-
user-principal section
* d/p/0004-
name-only parameter
* d/p/0005-
man pages
* d/p/0006-
description of config handling
* d/p/0007-
using Samba with Winbind, set "kerberos method" to "secrets and keytab"
* d/p/install-
(LP: #1894150)
* d/p/dont-
services are socket activated and don't need a "services" line in
sssd.conf (LP: #1880157)
* d/p/0004-
when using samba to join a domain, and the client is from a different
domain, also set "additional dns hostnames"
* d/p/0002-
when talking to FreeIPA
* d/p/0003-
when joining using samba, try kerberos auth first and fallback to
ntlm as before
-- Andreas Hasenack <email address hidden> Tue, 08 Sep 2020 15:15:12 -0300