- 
    Wed Feb 21 2018 Fabiano Fidêncio <fidencio@redhat.com> - 1.16.0-19
    - Related: rhbzrhbz#1544943 - sssd goes offline when renewing expired ticket 
- 
    Wed Feb 21 2018 Fabiano Fidêncio <fidencio@redhat.com> - 1.16.0-18
    - Resolves: rhbz#1543348 - sssd_be consumes more memory on RHEL 7.4 systems.
- Resolves: rhbz#1544943 - sssd goes offline when renewing expired ticket 
- 
    Mon Feb 19 2018 Fabiano Fidêncio <fidencio@redhat.com> - 1.16.0-17
    - Resolves: rhbz#1523282 - sssd used wrong search base with wrong AD
                           server
- 
    Tue Feb 06 2018 Fabiano Fidêncio <fidencio@redhat.com> - 1.16.0-16
    - Resolves: rhbz#1538643 - SSSD crashes when retrieving a Desktop Profile
                           with no specific host/hostgroup set
- Related: rhbz#1441908 - SELINUX: Use getseuserbyname to get IPA seuser
- Related: rhbz#1327705 - [RFE] Automatic creation of user private groups
                          on RHEL clients joined to AD via sssd [RHEL 7]
- 
    Wed Jan 24 2018 Fabiano Fidêncio <fidencio@redhat.com> - 1.16.0-15
    - Resolves: rhbz#1517971 - AD Domain goes offline immediately during
                           subdomain initialization - IPA AD Trust
- Related: rhbz#1482555 - sysdb index improvements - missing ghost
                          attribute indexing, unneeded objectclass index
                          etc..
- Related: rhbz#1327705 - [RFE] Automatic creation of user private groups
                          on RHEL clients joined to AD via sssd [RHEL 7]
- Resolves: rhbz#1527149 - AD provider - AD BUILTIN groups are cached with
                           gidNumber = 0
- Related: rhbz#1461899 - Loading enterprise principals doesn't work with
                          a primed cache
- Related: rhbz#1473571 - ipa-extdom-extop plugin can exhaust DS worker
                          threads
- 
    Fri Dec 15 2017 Fabiano Fidêncio <fidencio@redhat.com> - 1.16.0-14
    - Resolves: rhbz#1525644 - dbus-send unable to find user by CAC cert 
- 
    Thu Dec 14 2017 Fabiano Fidêncio <fidencio@redhat.com> - 1.16.0-13
    - Resolves: rhbz#1523010 - IPA user able to authenticate with revoked cert
                           on smart card
- 
    Mon Dec 11 2017 Fabiano Fidêncio <fidencio@redhat.com> - 1.16.0-12
    - Resolves: rhbz#1512027 - NSS by-id requests are not checked against
                           max_id/min_id ranges before triggering the
                           backend
- 
    Fri Dec 08 2017 Fabiano Fidêncio <fidencio@redhat.com> - 1.16.0-11
    - Related: rhbz#1507614 - Improve Smartcard integration if multiple
                          certificates or multiple mapped identities are
                          available
- Resolves: rhbz#1523010 - IPA user able to authenticate with revoked
                           cert on smart card
- Resolves: rhbz#1520984 - getent output is not showing home directory
                           for IPA AD trusted user
- Related: rhbz#1473571 - ipa-extdom-extop plugin can exhaust DS worker
                          threads
- 
    Wed Dec 06 2017 Fabiano Fidêncio <fidencio@redhat.com> - 1.16.0-10
    - Resolves: rhbz#1421194 - SSSD doesn't use AD global catalog for
                           gidnumber lookup, resulting in unacceptable
                           delay for large forests