Oracle Linux 6264 Published by

A sssd bug fix and enhancement update (aarch64) has been released for Oracle Linux 7.



El-errata: ELBA-2021-0341 Oracle Linux 7 sssd bug fix and enhancement update (aarch64)


Oracle Linux Bug Fix Advisory ELBA-2021-0341

  http://linux.oracle.com/errata/ELBA-2021-0341.html

The following updated rpms for Oracle Linux 7 have been uploaded to the
Unbreakable Linux Network:

aarch64:
libipa_hbac-1.16.5-10.0.1.el7_9.7.aarch64.rpm
libsss_autofs-1.16.5-10.0.1.el7_9.7.aarch64.rpm
libsss_certmap-1.16.5-10.0.1.el7_9.7.aarch64.rpm
libsss_idmap-1.16.5-10.0.1.el7_9.7.aarch64.rpm
libsss_nss_idmap-1.16.5-10.0.1.el7_9.7.aarch64.rpm
libsss_simpleifp-1.16.5-10.0.1.el7_9.7.aarch64.rpm
libsss_sudo-1.16.5-10.0.1.el7_9.7.aarch64.rpm
python-libipa_hbac-1.16.5-10.0.1.el7_9.7.aarch64.rpm
python-libsss_nss_idmap-1.16.5-10.0.1.el7_9.7.aarch64.rpm
python-sss-1.16.5-10.0.1.el7_9.7.aarch64.rpm
python-sssdconfig-1.16.5-10.0.1.el7_9.7.noarch.rpm
python-sss-murmur-1.16.5-10.0.1.el7_9.7.aarch64.rpm
sssd-1.16.5-10.0.1.el7_9.7.aarch64.rpm
sssd-ad-1.16.5-10.0.1.el7_9.7.aarch64.rpm
sssd-client-1.16.5-10.0.1.el7_9.7.aarch64.rpm
sssd-common-1.16.5-10.0.1.el7_9.7.aarch64.rpm
sssd-common-pac-1.16.5-10.0.1.el7_9.7.aarch64.rpm
sssd-dbus-1.16.5-10.0.1.el7_9.7.aarch64.rpm
sssd-ipa-1.16.5-10.0.1.el7_9.7.aarch64.rpm
sssd-kcm-1.16.5-10.0.1.el7_9.7.aarch64.rpm
sssd-krb5-1.16.5-10.0.1.el7_9.7.aarch64.rpm
sssd-krb5-common-1.16.5-10.0.1.el7_9.7.aarch64.rpm
sssd-ldap-1.16.5-10.0.1.el7_9.7.aarch64.rpm
sssd-libwbclient-1.16.5-10.0.1.el7_9.7.aarch64.rpm
sssd-polkit-rules-1.16.5-10.0.1.el7_9.7.aarch64.rpm
sssd-proxy-1.16.5-10.0.1.el7_9.7.aarch64.rpm
sssd-tools-1.16.5-10.0.1.el7_9.7.aarch64.rpm
sssd-winbind-idmap-1.16.5-10.0.1.el7_9.7.aarch64.rpm
libipa_hbac-devel-1.16.5-10.0.1.el7_9.7.aarch64.rpm
libsss_certmap-devel-1.16.5-10.0.1.el7_9.7.aarch64.rpm
libsss_idmap-devel-1.16.5-10.0.1.el7_9.7.aarch64.rpm
libsss_nss_idmap-devel-1.16.5-10.0.1.el7_9.7.aarch64.rpm
libsss_simpleifp-devel-1.16.5-10.0.1.el7_9.7.aarch64.rpm
sssd-libwbclient-devel-1.16.5-10.0.1.el7_9.7.aarch64.rpm

SRPMS:
  http://oss.oracle.com/ol7/SRPMS-updates/sssd-1.16.5-10.0.1.el7_9.7.src.rpm


Description of changes:

[1.16.5-10.0.1]
- Revert Redhat's change of disallowing duplicated incomplete gid
when "id_provider=ldap" is used, which caused regression in AD
environment. [Orabug: 29286774] [Doc ID 2605732.1]

[1.16.5-10.7]
- Resolves: rhbz#1875514 - filter_groups option partially filters the
group from 'id' output of the user because gidNumber still appears in
'id' output [rhel-7.9.z]
- Resolves: rhbz#1772513 - SSSD is generating lot of LDAP queries in a
very large environment [rhel-7.9.z]
- Resolves: rhbz#1736845 - [RFE] Backporting certificate matching rules
for files, AD and LDAP provider [rhel-7.9.z]

[1.16.5-10.6]
- Resolves: rhbz#1899593 - sssd_be segfaults at
be_refresh_get_values_ex() due to NULL ptrs in results of
sysdb_search_with_ts_attr() [rhel-7.9.z]
- Resolves: rhbz#1888409 - sssd component logging is now too generic in
syslog/journal [rhel-7.9.z]
- Resolves: rhbz#1852659 - sssd service is starting even though it is
disabled state [rhel-7.9.z]
- Resolves: rhbz#1893443 - User lookups over the InfoPipe responder fail
intermittently [rhel-7.9.z]
- Resolves: rhbz#1871288 - krb5_child denies ssh users when pki device
detected [rhel-7.9.z]
- Resolves: rhbz#1853703 - Unexpected behavior and issue with
filter_users/filter_groups option [rhel-7.9.z]
- Resolves: rhbz#1756240 - [RfE] Implement a new sssd.conf option to
disable the filter for AD domain local groups from trusted domains
[rhel-7.9.z]
- Resolves: rhbz#1851112 - LDAP bind can fail due to unconfigurable DNS
server timeouts that inhibit SSSD failover [rhel-7.9.z]

[1.16.5-10.5]
- Resolves: rhbz#1859554 - Secondary LDAP group go missing from 'id'
command on RHEL 7.8 with sssd-1.16.2-37.el7_8.1 [rhel-7.9.z]
(Previous attempt to fix this issue was incomplete (again))
- just bumping the version to build for proper target

[1.16.5-10.4]
- Resolves: rhbz#1859554 - Secondary LDAP group go missing from 'id'
command on RHEL 7.8 with sssd-1.16.2-37.el7_8.1 [rhel-7.9.z]
(Previous attempt to fix this issue was incomplete (again))

[1.16.5-10.3]
- Resolves: rhbz#1859554 - Secondary LDAP group go missing from 'id'
command on RHEL 7.8 with sssd-1.16.2-37.el7_8.1 [rhel-7.9.z]
(Previous attempt to fix this issue was incomplete)

[1.16.5-10.2]
- Resolves: rhbz#1854317 - sssd crashes after last update to
sssd-common-1.16.4-37.el7_8.1 with servers configured with multiple
domains [rhel-7.9.z]
- Resolves: rhbz#1859554 - Secondary LDAP group go missing from 'id'
command on RHEL 7.8 with sssd-1.16.2-37.el7_8.1 [rhel-7.9.z]
- just bumping the version to build for proper target

[1.16.5-10.1]
- Resolves: rhbz#1854317 - sssd crashes after last update to
sssd-common-1.16.4-37.el7_8.1 with servers configured with multiple
domains [rhel-7.9.z]
- Resolves: rhbz#1859554 - Secondary LDAP group go missing from 'id'
command on RHEL 7.8 with sssd-1.16.2-37.el7_8.1 [rhel-7.9.z]