- 
    Thu Mar 22 2012 Stephen Gallagher <sgallagh@redhat.com> - 1.5.1-49.1
    - Add the ability to disable the LDAP simple paging control
- Resolves: rhbz#806765 - Intermittent LDAP paging errors 
- 
    Fri Jan 13 2012 Stephen Gallagher <sgallagh@redhat.com> - 1.5.1-49
    - Resolves: rhbz#680443 - Detect support for the nsupdate realm directive
- Resolves: rhbz#773327 - The full dyndns update message should be logged
                          into debug logs
- 
    Tue Dec 13 2011 Stephen Gallagher <sgallagh@redhat.com> - 1.5.1-47
    - Resolves: rhbz#767168 Offline actions take a very long time 
- 
    Fri Dec 09 2011 Stephen Gallagher <sgallagh@redhat.com> - 1.5.1-46
    - Related:  rhbz#758168 - sssd_nss crashes when passed invalid UTF-8 for the
                          username in getpwnam()
- 
    Mon Dec 05 2011 Stephen Gallagher <sgallagh@redhat.com> - 1.5.1-45
    - Resolves: rhbz#760106 - cannot install sssd or sssd-tools
- Resolves: rhbz#758168 - sssd_nss crashes when passed invalid UTF-8 for the
                          username in getpwnam()
- Resolves: rhbz#758163 - LDAP failover not working if server refuses
                          connections
- Resolves: rhbz#760166 - HBAC rule evaluation does not support extended
                          UTF-8 languages
- 
    Mon Dec 05 2011 Stephen Gallagher <sgallagh@redhat.com> - 1.5.1-44
    - Related:  rhbz#748844 - sssd.$arch should require sssd-client.$arch 
- 
    Mon Nov 28 2011 Stephen Gallagher <sgallagh@redhat.com> - 1.5.1-43
    - Resolves: rhbz#757810 - SSSD needs to build with -fno-strict-aliasing 
- 
    Wed Nov 23 2011 Stephen Gallagher <sgallagh@redhat.com> - 1.5.1-41
    - Resolves: rhbz#748844 - sssd.$arch should require sssd-client.$arch 
- 
    Wed Nov 02 2011 Stephen Gallagher <sgallagh@redhat.com> - 1.5.1-40
    - Resolves: rhbz#750373 - Major cached entry performance regression 
- 
    Mon Oct 31 2011 Stephen Gallagher <sgallagh@redhat.com> - 1.5.1-39
    - Resolves: rhbz#750229 - SSSD may go into infinite loop during RFC2307bis
                          initgroups when groups appear in multiple nesting
                          levels
- 
    Tue Oct 25 2011 Stephen Gallagher <sgallagh@redhat.com> - 1.5.1-38
    - Resolves: rhbz#692455 - rfc2307bis groups are being enumerated even when the gidNumber is out of the range of min_id,max_id.
- Resolves: rhbz#700168 - Users with a local group as their primary GID are denied access by the simple access provider
- Resolves: rhbz#707975 - Unable to authenticate users when username contains "\0"
- Resolves: rhbz#707999 - The IPA provider does not work with IPv6
- Resolves: rhbz#708104 - "renew_all_tgts" and "renew_handlers" messages are being logged multiple times when the provider comes back online.
- Resolves: rhbz#748818 - SSSD not functional after "self" reboot
- Resolves: rhbz#748820 - RFC2307bis initgroups calls are slow
- Resolves: rhbz#748822 - SSSD is not populating nested groups in Active Directory
- Resolves: rhbz#748834 - IPA provider fails initgroups() if user is not a member of any group
- Resolves: rhbz#748836 - Process /usr/libexec/sssd/sssd_be was killed by signal 11 (SIGSEGV) when ldap_uri is misconfigured.
- Resolves: rhbz#748837 - RFE: SSSD should support paged LDAP lookups
- Resolves: rhbz#748842 - Include valid "ldap_uri" formats in sssd-ldap man page
- Resolves: rhbz#748846 - During the change password operation the ccache is not replaced by a new one if the old one isn't active anymore.
- Resolves: rhbz#748856 - sssd doesn't honor ldap supportedControls
- Resolves: rhbz#748860 - LDAP+GSSAPI needs explicit Kerberos realm
- Resolves: rhbz#748862 - Resolve RPMDiff errors in SSSD
- Resolves: rhbz#748864 - SSSD taking 5 minutes to log in
- Resolves: rhbz#748869 - "System error" appears in log during change password operation of a user in openldap server with ppolicy enabled.
- Resolves: rhbz#748870 - sssd crashes during auth while there exists multiple external hosts along with managed host.
- Resolves: rhbz#748871 - sssd blocks login of   ipa-users
- Resolves: rhbz#748872 - Authentication fails when there exists an empty hbacsvcgroup.
- Resolves: rhbz#748873 - Improve password policy error message
- Resolves: rhbz#748874 - Unable to enumerate rfc2307bis group with non-default attribute names.
- Resolves: rhbz#748875 - SSSD should pick a user/group name when there are multi-valued names
- Resolves: rhbz#748877 - Group lookups doesn't return it's member for sometime when the member has multi-valued uid.
- Resolves: rhbz#748878 - Lookup fails for non-primary usernames with multi-valued uid.
- Resolves: rhbz#748879 - "Unknown (private extension) error(21853), (null)" messages are logged during change password operation of a user in openldap server with ppolicy enabled.
- Resolves: rhbz#748882 - Rework the example config
- Resolves: rhbz#748897 - HBAC processing is very slow when dealing with FreeIPA deployments with large numbers of hosts.
- Resolves: rhbz#749255 - SSSD can crash due to dbus server removing a UNIX socket
- Resolves: rhbz#748833 - latest sssd fails if ldap_default_authtok_type is not mentioned
- Resolves: rhbz#748835 - SSSD's async resolver only tries the first nameserver in /etc/resolv.conf
- Resolves: rhbz#748847 - sssd shuts down if inotify crashes
- Resolves: rhbz#748848 - libsss_ldap segfault at login against OpenLDAP
- Resolves: rhbz#748849 - Certificate validation fails with message "Connection error: TLS: hostname does not match CN in peer certificate"
- Resolves: rhbz#748855 - sssd_pam leaks file descriptors.
- Resolves: rhbz#748883 - HBAC rule evaluation does not properly handle host groups
- Resolves: rhbz#748899 - HBAC: Hostname comparisons should be case-insensitive
- Resolves: rhbz#748854 - Remove DENY rules from the HBAC access provider
- Resolves: rhbz#748857 - "groups user" and "finger gecos" fails
- Resolves: rhbz#748893 - SSSD backend gets killed on slow systems
- Resolves: rhbz#748895 - Only access sssd_nss internal hash table if it was initialized
- Resolves: rhbz#748896 - sssd_pam segfaults on sssd restart
- Resolves: rhbz#748853 - IPA dynamic DNS update mangles AAAA records
- Resolves: rhbz#748858 - sssd does not handle kerberos server IP change
- Resolves: rhbz#748861 - Provide a mechanism for vetoing the use of certain shells
- Resolves: rhbz#748865 - When non-posix groups are skipped, initgroups returns random GID
- Resolves: rhbz#748866 - Add LDAP provider option to set LDAP_OPT_X_SASL_NOCANON
- Resolves: rhbz#748867 - [RFE] Have SSSD cache properly with krb5_validate = True and SElinux enabled
- Resolves: rhbz#748881 - Use an explicit base 10 when converting uidNumber to integer
- Resolves: rhbz#748821 - [RFE] Support overriding attribute value
- Resolves: rhbz#698724 - kpasswd fails when using sssd and kadmin server != kdc server
- Resolves: rhbz#680443 - Dynamic DNS update fails if multiple servers are given in ipa_server config option
- Resolves: rhbz#694580 - SSSD's man pages are missing information
- Resolves: rhbz#709352 - Typo in negative cache notification for initgroups()
- Resolves: rhbz#748898 - SSSD can crash due to dbus server removing a UNIX socket 
- 
    Thu Jun 09 2011 Stephen Gallagher <sgallagh@redhat.com> - 1.5.1-37
    - Reverts:  rhbz#680443 - Dynamic DNS update fails if multiple servers are
-                         given in ipa_server config option 
- 
    Tue May 31 2011 Stephen Gallagher <sgallagh@redhat.com> - 1.5.1-36
    - Resolves: rhbz#709333 - sssd.$arch should require sssd-client.$arch 
- 
    Wed May 25 2011 Stephen Gallagher <sgallagh@redhat.com> - 1.5.1-35
    - Resolves: rhbz#707340 - latest sssd fails if ldap_default_authtok_type is
-                         not mentioned
- Resolves: rhbz#707574 - SSSD's async resolver only tries the first
-                         nameserver in /etc/resolv.conf 
- 
    Tue May 03 2011 Stephen Gallagher <sgallagh@redhat.com> - 1.5.1-34
    - Resolves: rhbz#701702 - sssd client libraries use select() but should use
-                         poll() instead 
- 
    Mon May 02 2011 Stephen Gallagher <sgallagh@redhat.com> - 1.5.1-33
    - Related:  rhbz#700858 - Automatic TGT renewal overwrites cached password
- Fix segfault in TGT renewal 
- 
    Fri Apr 29 2011 Stephen Gallagher <sgallagh@redhat.com> - 1.5.1-32
    - Resolves: rhbz#700858 - Automatic TGT renewal overwrites cached password 
- 
    Fri Apr 15 2011 Stephen Gallagher <sgallagh@redhat.com> - 1.5.1-30
    - Resolves: rhbz#696979 - Filters not honoured against fully-qualified users 
- 
    Thu Apr 14 2011 Stephen Gallagher <sgallagh@redhat.com> - 1.5.1-29
    - Resolves: rhbz#694149 - SSSD consumes GBs of RAM, possible memory leak 
- 
    Tue Apr 12 2011 Stephen Gallagher <sgallagh@redhat.com> - 1.5.1-28
    - Related:  rhbz#691900 - SSSD needs to fall back to 'cn' for GECOS
-                         information 
- 
    Tue Apr 12 2011 Stephen Gallagher <sgallagh@redhat.com> - 1.5.1-27
    - Related:  rhbz#694853 - SSSD crashes during getent when anonymous bind is
-                         disabled 
- 
    Mon Apr 11 2011 Stephen Gallagher <sgallagh@redhat.com> - 1.5.1-26
    - Resolves: rhbz#695476 - Unable to resolve SRV record when called with
-                         _srv_,<fixed ldap uri> in ldap_uri
- Related:  rhbz#694853 - SSSD crashes during getent when anonymous bind is
-                         disabled 
- 
    Fri Apr 08 2011 Stephen Gallagher <sgallagh@redhat.com> - 1.5.1-25
    - Resolves: rhbz#694853 - SSSD crashes during getent when anonymous bind is
-                         disabled 
- 
    Fri Apr 01 2011 Stephen Gallagher <sgallagh@redhat.com> - 1.5.1-24
    - Resolves: rhbz#692960 - Process /usr/libexec/sssd/sssd_be was killed by
-                         signal 11 (SIGSEGV)
-                         Fix is to not attempt to resolve nameless servers 
- 
    Wed Mar 30 2011 Stephen Gallagher <sgallagh@redhat.com> - 1.5.1-23
    - Resolves: rhbz#691900 - SSSD needs to fall back to 'cn' for GECOS
-                         information 
- 
    Mon Mar 28 2011 Stephen Gallagher <sgallagh@redhat.com> - 1.5.1-21
    - Resolves: rhbz#690867 - Groups with a zero-length memberuid attribute can
-                         cause SSSD to stop caching and responding to
-                         requests 
- 
    Fri Mar 25 2011 Stephen Gallagher <sgallagh@redhat.com> - 1.5.1-20
    - Resolves: rhbz#690287 - Traceback messages seen while interrupting
-                         sss_obfuscate using ctrl+d
- Resolves: rhbz#690814 - [abrt] sssd-1.2.1-28.el6_0.4: _talloc_free: Process
-                         /usr/libexec/sssd/sssd_be was killed by signal 11
-                         (SIGSEGV) 
- 
    Wed Mar 23 2011 Stephen Gallagher <sgallagh@redhat.com> - 1.5.1-19
    - Related: rhbz#690096 - SSSD should skip over groups with multiple names 
- 
    Wed Mar 23 2011 Stephen Gallagher <sgallagh@redhat.com> - 1.5.1-18
    - Resolves: rhbz#690093 - SSSD breaks on RDNs with a comma in them
- Resolves: rhbz#690096 - SSSD should skip over groups with multiple names
- Resolves: rhbz#689887 - group memberships are not populated correctly during
-                         IPA provider initgroups
- Resolves: rhbz#688697 - Skip users and groups that have incomplete contents
- Resolves: rhbz#688694 - authconfig fails when access_provider is set as krb5
-                         in sssd.conf 
- 
    Thu Mar 10 2011 Stephen Gallagher <sgallagh@redhat.com> - 1.5.1-17
    - Resolves: rhbz#688677 - Build SSSD in RHEL 5.7 against openldap24-libs
- Adds support for following LDAP referrals and using Mozilla NSS for crypto
- support 
- 
    Wed Mar 09 2011 Stephen Gallagher <sgallagh@redhat.com> - 1.5.1-16
    - Resolves: rhbz#683260 - sudo/ldap lookup via sssd gets stuck for 5min
-                         waiting on netgroup
- Resolves: rhbz#683585 - sssd consumes 100% CPU
- Related: rhbz#680441  - sssd does not handle kerberos server IP change 
- 
    Tue Mar 08 2011 Stephen Gallagher <sgallagh@redhat.com> - 1.5.1-15
    - Related: rhbz#680441 - sssd does not handle kerberos server IP change
-   SSSD was staying with the old server if it was still online 
- 
    Mon Mar 07 2011 Stephen Gallagher <sgallagh@redhat.com> - 1.5.1-14
    - Resolves: rhbz#682853 - IPA provider should use realm instead of ipa_domain
-                         for base DN 
- 
    Mon Mar 07 2011 Stephen Gallagher <sgallagh@redhat.com> - 1.5.1-13
    - Resolves: rhbz#682803 - sssd-be segmentation fault - ipa-client on
-                         ipa-server
- Resolves: rhbz#680441 - sssd does not handle kerberos server IP change
- Resolves: rhbz#680443 - Dynamic DNS update fails if multiple servers are
-                         given in ipa_server config option
- Resolves: rhbz#680933 - Do not delete sysdb memberOf if there is no memberOf
-                         attribute on the server
- Resolves: rhbz#682808 - sssd_nss core dumps with certain lookups 
- 
    Tue Feb 22 2011 Stephen Gallagher <sgallagh@redhat.com> - 1.5.1-12
    - Related: rhbz#679087 - SSSD IPA provider should honor the krb5_realm option
- Related: rhbz#678615 - SSSD needs to look at IPA's compat tree for netgroups 
- 
    Tue Feb 22 2011 Stephen Gallagher <sgallagh@redhat.com> - 1.5.1-11
    - Resolves: rhbz#679087 - SSSD IPA provider should honor the krb5_realm option
- Resolves: rhbz#679097 - Does not read renewable ccache at startup 
- 
    Mon Feb 21 2011 Stephen Gallagher <sgallagh@redhat.com> - 1.5.1-10
    - Resolves: rhbz#678606 - User information not updated on login for secondary
-                         domains
- Resolves: rhbz#678778 - IPA provider does not update removed group
-                         memberships on initgroups 
- 
    Sat Feb 19 2011 Stephen Gallagher <sgallagh@redhat.com> - 1.5.1-9
    - Resolves: rhbz#678780 - sssd crashes at the next tgt renewals it tries
- Resolves: rhbz#678412 - name service caches names, so id command shows
-                         recently deleted users
- Resolves: rhbz#678615 - SSSD needs to look at IPA's compat tree for
-                         netgroups 
- 
    Thu Feb 17 2011 Stephen Gallagher <sgallagh@redhat.com> - 1.5.1-8
    - Related: rhbz#665314 - Rebase SSSD to 1.5 in RHEL 5.7
- Fix generation of translated manpages 
- 
    Wed Feb 16 2011 Stephen Gallagher <sgallagh@redhat.com> - 1.5.1-7
    - Resolves: rhbz#665314 - Rebase SSSD to 1.5 in RHEL 5.7
- Resolves: rhbz#676027 - sssd segfault when first entry of ldap_uri is
-                         unreachable
- Resolves: rhbz#678032 - Remove HBAC time rules from SSSD
- Resolves: rhbz#675007 - sssd corrupts group cache
- Resolves: rhbz#608864 - [RFE] Support obfuscated passwords in the SSSD
-                         configuration 
- 
    Thu Dec 02 2010 Stephen Gallagher <sgallagh@redhat.com> - 1.2.1-39
    - Resolves: rhbz#659136 - SSSD shutdown sometimes hangs 
- 
    Wed Nov 24 2010 Stephen Gallagher <sgallagh@redhat.com> - 1.2.1-38
    - Resolves: rhbz#638241 - sssd stops on upgrade 
- 
    Fri Nov 05 2010 Stephen Gallagher <sgallagh@redhat.com> - 1.2.1-37
    - Resolves: rhbz#649037 - Unable to set SELinux user for the user“s login 
- 
    Wed Nov 03 2010 Stephen Gallagher <sgallagh@redhat.com> - 1.2.1-36
    - Resolves: rhbz#649285 - SSSD will sometimes lose groups from the cache 
- 
    Tue Nov 02 2010 Stephen Gallagher <sgallagh@redhat.com> - 1.2.1-35
    - Resolves: rhbz#645437 - NSS responder dies if DP dies during a request 
- 
    Tue Oct 26 2010 Stephen Gallagher <sgallagh@redhat.com> - 1.2.1-34
    - Resolves: rhbz#645515 - 'getent passwd <username>' returns nothing if its
-                         uidNumber gt 2147483647 
- 
    Fri Oct 22 2010 Stephen Gallagher <sgallagh@redhat.com> - 1.2.1-33
    - Resolves: rhbz#645515 - 'getent passwd <username>' returns nothing if its
-                         uidNumber gt 2147483647 
- 
    Fri Oct 08 2010 Stephen Gallagher <sgallagh@redhat.com> - 1.2.1-32
    - Resolves: rhbz#636055 - SSSD initgroups does not behave as expected
- Resolves: rhbz#634918 - multilib conflicts in libpath_utils-devel and
-                         libini_config-devel 
- 
    Fri Oct 08 2010 Stephen Gallagher <sgallagh@redhat.com> - 1.2.1-31
    - Resolves: rhbz#633863 - SSSD log fills up the disk
- Resolves: rhbz#634918 - multilib conflicts in libpath_utils-devel and
-                         libini_config-devel
- Resolves: rhbz#636823 - the krb5 locator plugin isn't packaged for multilib
- Resolves: rhbz#638241 - sssd stops on upgrade 
- 
    Tue Sep 28 2010 Stephen Gallagher <sgallagh@redhat.com> - 1.2.1-30
    - Resolves: rhbz#634861 - error: %post(sssd-1.2.1-28.1.el5.s390x) scriptlet
-                         failed, exit status 127 
- 
    Thu Sep 23 2010 Stephen Gallagher <sgallagh@redhat.com> - 1.2.1-29
    - Resolves: rhbz#636823 - the krb5 locator plugin isn't packaged for multilib 
- 
    Tue Aug 24 2010 Stephen Gallagher <sgallagh@redhat.com> - 1.2.1-28.1
    - Resolves: CVE-2010-2940 - sssd allows null password entry to authenticate
-                           against LDAP
- Patch was included but not applied in previous version 
- 
    Tue Aug 24 2010 Stephen Gallagher <sgallagh@redhat.com> - 1.2.1-27.1
    - Resolves: CVE-2010-2940 - sssd allows null password entry to authenticate
-                           against LDAP 
- 
    Wed Aug 04 2010 Stephen Gallagher <sgallagh@redhat.com> - 1.2.1-26
    - Resolves: rhbz#621307 - Password changes are broken on LDAP 
- 
    Wed Aug 04 2010 Stephen Gallagher <sgallagh@redhat.com> - 1.2.1-23.1
    - Initial release for Red Hat Enterprise Linux 5 
- 
    Fri Jul 30 2010 Stephen Gallagher <sgallagh@redhat.com> - 1.2.1-23
    - Resolves: rhbz#617623 - SSSD suffers from serious performance issues on
-                         initgroups calls 
- 
    Fri Jul 23 2010 Stephen Gallagher <sgallagh@redhat.com> - 1.2.1-21
    - Resolves: rhbz#607233 - SSSD users cannot log in through GDM
-                       - Real issue was that long-running services
-                       - do not reconnect if sssd is restarted 
- 
    Fri Jul 09 2010 Stephen Gallagher <sgallagh@redhat.com> - 1.2.1-20
    - Resolves: rhbz#591715 - sssd should emit warnings if there are problems with
-                         /etc/krb5.keytab file 
- 
    Mon Jun 28 2010 Stephen Gallagher <sgallagh@redhat.com> - 1.2.1-19
    - Resolves: rhbz#606836 - libcollection needs an soname bump before RHEL 6
-                         final
- Resolves: rhbz#608661 - SASL with OpenLDAP server fails
- Resolves: rhbz#608688 - SSSD doesn't properly request RootDSE attributes 
- 
    Fri Jun 18 2010 Stephen Gallagher <sgallagh@redhat.com> - 1.2.1-15
    - New upstream bugfix release 1.2.1
- Resolves: rhbz#601770 - SSSD in RHEL 6.0 should ship with zero open Coverity
-                         bugs.
- Resolves: rhbz#603041 - Remove unnecessary option krb5_changepw_principal
- Resolves: rhbz#604704 - authconfig should provide error with no trace back
-                         if disabling sssd when sssd is not enabled
- Resolves: rhbz#591873 - Connecting to the network after an offline kerberos
-                         auth logs continuous error messages to sssd_ldap.log
- Resolves: rhbz#596295 - Authentication fails for user from the second domain
-                         when the same user name is filtered out from the
-                         first domain
- Related:  rhbz#598559 - Update translation files for SSSD before RHEL 6
-                         final 
- 
    Thu Jun 10 2010 Stephen Gallagher <sgallagh@redhat.com> - 1.2.0-14
    - Resolves: rhbz#593696 - Empty list of simple_allow_users causes sssd service
-                         to fail while restart
- Resolves: rhbz#600352 - Wrapping the value for "ldap_access_filter" in
-                         parentheses causes ldap_search_ext to fail
- Resolves: rhbz#600468 - Segfault in krb5_child
- Related:  rhbz#601770 - SSSD in RHEL 6.0 should ship with zero open Coverity
-                         bugs. 
- 
    Wed Jun 02 2010 Stephen Gallagher <sgallagh@redhat.com> - 1.2.0-13
    - Resolves: rhbz#598670 - Ccache file of a user is removed too early
- Resolves: rhbz#599057 - Incomplete comparison of a service name in
-                         IPA access provider
- Resolves: rhbz#598496 - Failure with IPA access provider
- Resolves: rhbz#599027 - Makefile typo causes SSSD not to use the
-                         kernel keyring 
- 
    Mon May 24 2010 Stephen Gallagher <sgallagh@redhat.com> - 1.2.0-12
    - New stable upstream version 1.2.0
- Support ServiceGroups for FreeIPA v2 HBAC rules
- Fix long-standing issue with auth_provider = proxy
- Better logging for TLS issues in LDAP
- Resolves: rhbz#584001 - Rebase sssd to 1.2
- Resolves: rhbz#584017 - Unconfiguring sssd leaves KDC locator file
- Resolves: rhbz#587384 - authconfig fails if krb5_kpasswd in sssd.conf
- Resolves: rhbz#587743 - Need to replicate pam_ldap's pam_filter in sssd.conf
- Resolves: rhbz#590134 - sssd: auth_provider = proxy regression
- Resolves: rhbz#591131 - Kerberos provider needs to rewrite kdcinfo file when
-                         going online
- Resolves: rhbz#591136 - Change SSSD ipa BE to handle new structure of the
-                         HBAC rule 
- 
    Wed May 19 2010 Stephen Gallagher <sgallagh@redhat.com> - 1.1.92-11.1
    - Improve DEBUG logs for STARTTLS failures 
- 
    Tue May 18 2010 Stephen Gallagher <sgallagh@redhat.com> - 1.1.92-11
    - New LDAP access provider allows for filtering user access by LDAP attribute
- Reduced default timeout for detecting offline status with LDAP
- GSSAPI ticket lifetime made configurable
- Better offline->online transition support in Kerberos 
- 
    Fri May 07 2010 Stephen Gallagher <sgallagh@redhat.com> - 1.1.91-10
    - Release new upstream version 1.1.91
- Enhancements when using SSSD with FreeIPA v2
- Support for deferred kinit
- Support for DNS SRV records for failover 
- 
    Fri Apr 02 2010 Simo Sorce <ssorce@redhat.com> - 1.1.1-3
    - Bump up release number to avoid library sub-packages version issues with
  previous releases. 
- 
    Thu Apr 01 2010 Stephen Gallagher <sgallagh@redhat.com> - 1.1.1-1
    - New upstream release 1.1.1
- Fixed the IPA provider (which was segfaulting at start)
- Fixed a bug in the SSSDConfig API causing some options to revert to
- their defaults
- This impacted the Authconfig UI
- Ensure that SASL binds to LDAP auto-retry when interrupted by a signal 
- 
    Mon Mar 22 2010 Stephen Gallagher <sgallagh@redhat.com> - 1.1.0-2
    - Release SSSD 1.1.0 final
- Fix two potential segfaults
- Fix memory leak in monitor
- Better error message for unusable confdb 
- 
    Wed Mar 17 2010 Stephen Gallagher <sgallagh@redhat.com> - 1.1.0-1.pre20100317git0ea7f19
    - Release candidate for SSSD 1.1
- Add simple access provider
- Create subpackages for libcollection, libini_config, libdhash and librefarray
- Support IPv6
- Support LDAP referrals
- Fix cache issues
- Better feedback from PAM when offline 
- 
    Wed Feb 24 2010 Stephen Gallagehr <sgallagh@redhat.com> - 1.0.5-2
    - Rebuild against new libtevent 
- 
    Fri Feb 19 2010 Stephen Gallagher <sgallagh@redhat.com> - 1.0.5-1
    - Fix licenses in sources and on RPMs 
- 
    Mon Jan 25 2010 Stephen Gallagher <sgallagh@redhat.com> - 1.0.4-1
    - Fix regression on 64-bit platforms 
- 
    Fri Jan 22 2010 Stephen Gallagher <sgallagh@redhat.com> - 1.0.3-1
    - Fixes link error on platforms that do not do implicit linking
- Fixes double-free segfault in PAM
- Fixes double-free error in async resolver
- Fixes support for TCP-based DNS lookups in async resolver
- Fixes memory alignment issues on ARM processors
- Manpage fixes 
- 
    Thu Jan 14 2010 Stephen Gallagher <sgallagh@redhat.com> - 1.0.2-1
    - Fixes a bug in the failover code that prevented the SSSD from detecting when it went back online
- Fixes a bug causing long (sometimes multiple-minute) waits for NSS requests
- Several segfault bugfixes 
- 
    Mon Jan 11 2010 Stephen Gallagher <sgallagh@redhat.com> - 1.0.1-1
    - Fix CVE-2010-0014 
- 
    Mon Dec 21 2009 Stephen Gallagher <sgallagh@redhat.com> - 1.0.0-2
    - Patch SSSDConfig API to address
- https://bugzilla.redhat.com/show_bug.cgi?id=549482 
- 
    Fri Dec 18 2009 Stephen Gallagher <sgallagh@redhat.com> - 1.0.0-1
    - New upstream stable release 1.0.0 
- 
    Fri Dec 11 2009 Stephen Gallagher <sgallagh@redhat.com> - 0.99.1-1
    - New upstream bugfix release 0.99.1 
- 
    Mon Nov 30 2009 Stephen Gallagher <sgallagh@redhat.com> - 0.99.0-1
    - New upstream release 0.99.0 
- 
    Tue Oct 27 2009 Stephen Gallagher <sgallagh@redhat.com> - 0.7.1-1
    - Fix segfault in sssd_pam when cache_credentials was enabled
- Update the sample configuration
- Fix upgrade issues caused by data provider service removal 
- 
    Mon Oct 26 2009 Stephen Gallagher <sgallagh@redhat.com> - 0.7.0-2
    - Fix upgrade issues from old (pre-0.5.0) releases of SSSD 
- 
    Fri Oct 23 2009 Stephen Gallagher <sgallagh@redhat.com> - 0.7.0-1
    - New upstream release 0.7.0 
- 
    Thu Oct 15 2009 Stephen Gallagher <sgallagh@redhat.com> - 0.6.1-2
    - Fix missing file permissions for sssd-clients 
- 
    Tue Oct 13 2009 Stephen Gallagher <sgallagh@redhat.com> - 0.6.1-1
    - Add SSSDConfig API
- Update polish translation for 0.6.0
- Fix long timeout on ldap operation
- Make dp requests more robust 
- 
    Tue Sep 29 2009 Stephen Gallagher <sgallagh@redhat.com> - 0.6.0-1
    - Ensure that the configuration upgrade script always writes the config
  file with 0600 permissions
- Eliminate an infinite loop in group enumerations 
- 
    Mon Sep 28 2009 Sumit Bose <sbose@redhat.com> - 0.6.0-0
    - New upstream release 0.6.0 
- 
    Mon Aug 24 2009 Simo Sorce <ssorce@redhat.com> - 0.5.0-0
    - New upstream release 0.5.0 
- 
    Wed Jul 29 2009 Jakub Hrozek <jhrozek@redhat.com> - 0.4.1-4
    - Fix for CVE-2009-2410 - Native SSSD users with no password set could log in
  without a password. (Patch by Stephen Gallagher) 
- 
    Sun Jul 26 2009 Fedora Release Engineering <rel-eng@lists.fedoraproject.org> - 0.4.1-3
    - Rebuilt for https://fedoraproject.org/wiki/Fedora_12_Mass_Rebuild 
- 
    Mon Jun 22 2009 Simo Sorce <ssorce@redhat.com> - 0.4.1-2
    - Fix a couple of segfaults that may happen on reload 
- 
    Thu Jun 11 2009 Simo Sorce <ssorce@redhat.com> - 0.4.1-1
    - add missing configure check that broke stopping the daemon
- also fix default config to add a missing required option 
- 
    Mon Jun 08 2009 Simo Sorce <ssorce@redhat.com> - 0.4.1-0
    - latest upstream release.
- also add a patch that fixes debugging output (potential segfault) 
- 
    Mon Apr 20 2009 Simo Sorce <ssorce@redhat.com> - 0.3.2-2
    - release out of the official 0.3.2 tarball 
- 
    Mon Apr 20 2009 Jakub Hrozek <jhrozek@redhat.com> - 0.3.2-1
    - bugfix release 0.3.2
- includes previous release patches
- change permissions of the /etc/sssd/sssd.conf to 0600 
- 
    Tue Apr 14 2009 Simo Sorce <ssorce@redhat.com> - 0.3.1-2
    - Add last minute bug fixes, found in testing the package 
- 
    Mon Apr 13 2009 Simo Sorce <ssorce@redhat.com> - 0.3.1-1
    - Version 0.3.1
- includes previous release patches 
- 
    Mon Apr 13 2009 Simo Sorce <ssorce@redhat.com> - 0.3.0-2
    - Try to fix build adding automake as an explicit BuildRequire
- Add also a couple of last minute patches from upstream 
- 
    Mon Apr 13 2009 Simo Sorce <ssorce@redhat.com> - 0.3.0-1
    - Version 0.3.0
- Provides file based configuration and lots of improvements 
- 
    Tue Mar 10 2009 Simo Sorce <ssorce@redhat.com> - 0.2.1-1
    - Version 0.2.1 
- 
    Tue Mar 10 2009 Simo Sorce <ssorce@redhat.com> - 0.2.0-1
    - Version 0.2.0 
- 
    Sun Mar 08 2009 Jakub Hrozek <jhrozek@redhat.com> - 0.1.0-5.20090309git691c9b3
    - package git snapshot 
- 
    Fri Mar 06 2009 Jakub Hrozek <jhrozek@redhat.com> - 0.1.0-4
    - fixed items found during review
- added initscript 
- 
    Thu Mar 05 2009 Sumit Bose <sbose@redhat.com> - 0.1.0-3
    - added sss_client 
- 
    Mon Feb 23 2009 Jakub Hrozek <jhrozek@redhat.com> - 0.1.0-2
    - Small cleanup and fixes in the spec file 
- 
    Thu Feb 12 2009 Stephen Gallagher <sgallagh@redhat.com> - 0.1.0-1
    - Initial release (based on version 0.1.0 upstream code)