Re: [SSSD] [PATCH] Check slot validity before MC_SLOT_TO_PTR.

2013-09-13 Thread Lukas Slebodnik
On (13/09/13 19:17), Michal Židek wrote: >On 09/13/2013 05:58 PM, Michal Židek wrote: >>Hello, >> >>This patch should add another line of defence against memory cache >>problems caused by accessing slot outside of bounds. >> >>Thanks >>Michal >> > >After discussion with Lukas I am attaching alterna

Re: [SSSD] setautomntenta autofs file not found

2013-09-13 Thread steve
On Fri, 2013-09-13 at 14:58 +0200, Jakub Hrozek wrote: > > Great, I'm glad it works for you now! Hi Thanks. Just one thing. We see that you support various schemas: https://fedorahosted.org/sssd/wiki/DesignDocs/AutofsIntegration For Samba4 AD we chose NIS because it's already available in the 2

Re: [SSSD] [PATCH] Check slot validity before MC_SLOT_TO_PTR.

2013-09-13 Thread Simo Sorce
On Fri, 2013-09-13 at 19:17 +0200, Michal Židek wrote: > On 09/13/2013 05:58 PM, Michal Židek wrote: > > Hello, > > > > This patch should add another line of defence against memory cache > > problems caused by accessing slot outside of bounds. > > > > Thanks > > Michal > > > > After discussion wit

Re: [SSSD] [PATCH] Check slot validity before MC_SLOT_TO_PTR.

2013-09-13 Thread Michal Židek
On 09/13/2013 05:58 PM, Michal Židek wrote: Hello, This patch should add another line of defence against memory cache problems caused by accessing slot outside of bounds. Thanks Michal After discussion with Lukas I am attaching alternative version without the call to save the corrupted cach

Re: [SSSD] [PATCH] Use systemd-login session information to check if user is logged in

2013-09-13 Thread Simo Sorce
On Fri, 2013-09-13 at 17:14 +0200, Jakub Hrozek wrote: > On Thu, Sep 12, 2013 at 07:10:38PM +0200, Jakub Hrozek wrote: > > On Wed, Sep 11, 2013 at 05:47:31PM -0400, Simo Sorce wrote: > > > On Wed, 2013-09-11 at 19:19 +0200, Jakub Hrozek wrote: > > > > On Wed, Sep 11, 2013 at 10:26:41AM -0400, Simo

[SSSD] About managing branches: WAS: [Fwd: Re: [PATCH] nss: Add option to disable memcache]

2013-09-13 Thread Simo Sorce
I wonder if it wouldn't make sense to delay commits to stable branches until the time to release comes ? Would it make it easier or harder to review and apply changes only at release time ? Simo. -- Simo Sorce * Red Hat, Inc * New York --- Begin Message --- On Fri, Sep 13, 2013 at 05:26:23PM +0

[SSSD] [PATCH] Check slot validity before MC_SLOT_TO_PTR.

2013-09-13 Thread Michal Židek
Hello, This patch should add another line of defence against memory cache problems caused by accessing slot outside of bounds. Thanks Michal >From a2dd2ecbfb9c066f191c5541bb775657bc0d25db Mon Sep 17 00:00:00 2001 From: Michal Zidek Date: Fri, 13 Sep 2013 17:41:28 +0200 Subject: [PATCH] Check

Re: [SSSD] [PATCH] nss: Add option to disable memcache

2013-09-13 Thread Jakub Hrozek
On Fri, Sep 13, 2013 at 05:26:23PM +0200, Jakub Hrozek wrote: > On Fri, Sep 13, 2013 at 02:31:50PM +0200, Michal Židek wrote: > > On 09/12/2013 10:10 PM, Simo Sorce wrote: > > >On Thu, 2013-09-12 at 20:06 +0200, Michal Židek wrote: > > >>On 09/12/2013 05:48 PM, Simo Sorce wrote: > > >>>On Thu, 2013

Re: [SSSD] [PATCH] Use systemd-login session information to check if user is logged in

2013-09-13 Thread Jakub Hrozek
On Thu, Sep 12, 2013 at 07:10:38PM +0200, Jakub Hrozek wrote: > On Wed, Sep 11, 2013 at 05:47:31PM -0400, Simo Sorce wrote: > > On Wed, 2013-09-11 at 19:19 +0200, Jakub Hrozek wrote: > > > On Wed, Sep 11, 2013 at 10:26:41AM -0400, Simo Sorce wrote: > > > > This patch was meant to remove the trollin

Re: [SSSD] [PATCH] nss: Add option to disable memcache

2013-09-13 Thread Jakub Hrozek
On Fri, Sep 13, 2013 at 02:31:50PM +0200, Michal Židek wrote: > On 09/12/2013 10:10 PM, Simo Sorce wrote: > >On Thu, 2013-09-12 at 20:06 +0200, Michal Židek wrote: > >>On 09/12/2013 05:48 PM, Simo Sorce wrote: > >>>On Thu, 2013-09-12 at 11:23 +0200, Jakub Hrozek wrote: > On Wed, Sep 11, 2013 at

[SSSD] [PATCH] LDAP: Use primary cn to search netgroup

2013-09-13 Thread Lukas Slebodnik
ehlo, Attached patch resolves ticket #2075 LS >From 658c7196d75293aa72242a455657b64a46d0bfa2 Mon Sep 17 00:00:00 2001 From: Lukas Slebodnik Date: Fri, 13 Sep 2013 16:06:03 +0200 Subject: [PATCH] LDAP: Use primary cn to search netgroup Resolves: https://fedorahosted.org/sssd/ticket/2075 --- src

Re: [SSSD] [PATCH] IPA: Deprecate ipa_hbac_support_srchost option

2013-09-13 Thread Jakub Hrozek
On Tue, Sep 10, 2013 at 04:41:01PM +0200, Jakub Hrozek wrote: > On Tue, Sep 10, 2013 at 09:48:02AM +0200, Ondrej Kos wrote: > > Hi, > > > > Attached patch resolves issue https://fedorahosted.org/sssd/ticket/1918 > > > > This option got already deprecated on the ipa server side. > > Option is undo

Re: [SSSD] [PATCH] MAN: Remove IPA specific LDAP settings

2013-09-13 Thread Jakub Hrozek
On Tue, Sep 10, 2013 at 04:34:04PM +0200, Jakub Hrozek wrote: > On Tue, Sep 10, 2013 at 09:47:17AM +0200, Ondrej Kos wrote: > > Hi, > > > > Attached patch resolves the issue https://fedorahosted.org/sssd/ticket/1187 > > I think the man page looks good now. I would like to ACK and push the > patch

[SSSD] [PATCH] man: improve sssd-sudo manual page

2013-09-13 Thread Pavel Březina
https://fedorahosted.org/sssd/ticket/2085 From 2a6573c0ceeaaa51e155a01719bbb283164705cf Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?Pavel=20B=C5=99ezina?= Date: Fri, 13 Sep 2013 15:48:10 +0200 Subject: [PATCH] man: improve sssd-sudo manual page Resolves: https://fedorahosted.org/sssd/ticket/2085 --

Re: [SSSD] setautomntenta autofs file not found

2013-09-13 Thread Jakub Hrozek
On Fri, Sep 13, 2013 at 02:50:13PM +0200, steve wrote: > On Fri, 2013-09-13 at 14:32 +0200, Jakub Hrozek wrote: > > > On 13/09/13 10:23, steve wrote: > > > [common_parse_search_base] (0x0100): Search base added: > > > [AUTOFS][cn][SUBTREE][�e^E+^M^?] > > ^ > >

[SSSD] Design Discussion: Improving AD provider access control

2013-09-13 Thread Jakub Hrozek
Hi, I created a design page that describes a proposed way of improving the current AD provider access control. The main ticket that tracks the work is https://fedorahosted.org/sssd/ticket/2082 and the full design page can be found here: https://fedorahosted.org/sssd/wiki/DesignDocs/ActiveDirectory

Re: [SSSD] setautomntenta autofs file not found

2013-09-13 Thread steve
On Fri, 2013-09-13 at 13:41 +0100, Rowland Penny wrote: > On 13/09/13 13:32, Jakub Hrozek wrote: > >> On 13/09/13 10:23, steve wrote: > >> [common_parse_search_base] (0x0100): Search base added: > >> [AUTOFS][cn][SUBTREE][�e^E+^M^?] > > ^ > > This l

Re: [SSSD] setautomntenta autofs file not found

2013-09-13 Thread Jakub Hrozek
On Fri, Sep 13, 2013 at 01:41:32PM +0100, Rowland Penny wrote: > On 13/09/13 13:32, Jakub Hrozek wrote: > >>On 13/09/13 10:23, steve wrote: > >>[common_parse_search_base] (0x0100): Search base added: > >>[AUTOFS][cn][SUBTREE][�e^E+^M^?] > > ^ > > This

Re: [SSSD] setautomntenta autofs file not found

2013-09-13 Thread steve
On Fri, 2013-09-13 at 14:32 +0200, Jakub Hrozek wrote: > > On 13/09/13 10:23, steve wrote: > > [common_parse_search_base] (0x0100): Search base added: > > [AUTOFS][cn][SUBTREE][�e^E+^M^?] > ^ > This looks like garbage..do you not see the actual >

Re: [SSSD] setautomntenta autofs file not found

2013-09-13 Thread Rowland Penny
On 13/09/13 13:30, Jakub Hrozek wrote: On Fri, Sep 13, 2013 at 12:10:03PM +0100, Rowland Penny wrote: On 13/09/13 10:34, Rowland Penny wrote: On 13/09/13 10:23, steve wrote: On Fri, 2013-09-13 at 10:38 +0200, steve wrote: On Fri, 2013-09-13 at 10:26 +0200, Jakub Hrozek wrote: On Fri, Sep 13,

Re: [SSSD] setautomntenta autofs file not found

2013-09-13 Thread Rowland Penny
On 13/09/13 13:32, Jakub Hrozek wrote: On 13/09/13 10:23, steve wrote: [common_parse_search_base] (0x0100): Search base added: [AUTOFS][cn][SUBTREE][�e^E+^M^?] ^ This looks like garbage..do you not see the actual search base here

Re: [SSSD] setautomntenta autofs file not found

2013-09-13 Thread Jakub Hrozek
> On 13/09/13 10:23, steve wrote: > [common_parse_search_base] (0x0100): Search base added: > [AUTOFS][cn][SUBTREE][�e^E+^M^?] ^ This looks like garbage..do you not see the actual search base here? _

Re: [SSSD] [PATCH] nss: Add option to disable memcache

2013-09-13 Thread Michal Židek
On 09/12/2013 10:10 PM, Simo Sorce wrote: On Thu, 2013-09-12 at 20:06 +0200, Michal Židek wrote: On 09/12/2013 05:48 PM, Simo Sorce wrote: On Thu, 2013-09-12 at 11:23 +0200, Jakub Hrozek wrote: On Wed, Sep 11, 2013 at 05:54:01PM -0400, Simo Sorce wrote: On Wed, 2013-09-11 at 20:19 +0200, Mich

Re: [SSSD] setautomntenta autofs file not found

2013-09-13 Thread Jakub Hrozek
On Fri, Sep 13, 2013 at 12:10:03PM +0100, Rowland Penny wrote: > On 13/09/13 10:34, Rowland Penny wrote: > >On 13/09/13 10:23, steve wrote: > >>On Fri, 2013-09-13 at 10:38 +0200, steve wrote: > >>>On Fri, 2013-09-13 at 10:26 +0200, Jakub Hrozek wrote: > On Fri, Sep 13, 2013 at 01:53:13AM +0200,

Re: [SSSD] setautomntenta autofs file not found

2013-09-13 Thread Rowland Penny
On 13/09/13 10:34, Rowland Penny wrote: On 13/09/13 10:23, steve wrote: On Fri, 2013-09-13 at 10:38 +0200, steve wrote: On Fri, 2013-09-13 at 10:26 +0200, Jakub Hrozek wrote: On Fri, Sep 13, 2013 at 01:53:13AM +0200, steve wrote: Hi Problems with autofs on a 1.11.1 git: The only error I can

Re: [SSSD] [PATCH] AD: Failure to get flat name is not fatal

2013-09-13 Thread Pavel Březina
On 09/04/2013 08:16 AM, Jakub Hrozek wrote: This patch depends on my other AD enumeration patches. https://fedorahosted.org/sssd/ticket/2067 Some AD or AD-like servers do not contain the netlogon attribute in the master domain name. Instead of failing completely, we should just abort the master

Re: [SSSD] setautomntenta autofs file not found

2013-09-13 Thread steve
On Fri, 2013-09-13 at 11:59 +0200, steve wrote: > > As it is, it only mounts one user, cifsuser for me. I suppose the next > step is to get it to mount with the wild card. I thought I had that in > my map but anyway, something is something. . . Hi Got it. To use the wild card (for all home fold

Re: [SSSD] setautomntenta autofs file not found

2013-09-13 Thread steve
On Fri, 2013-09-13 at 10:34 +0100, Rowland Penny wrote: > On 13/09/13 10:23, steve wrote: > > On Fri, 2013-09-13 at 10:38 +0200, steve wrote: > >> On Fri, 2013-09-13 at 10:26 +0200, Jakub Hrozek wrote: > >>> On Fri, Sep 13, 2013 at 01:53:13AM +0200, steve wrote: > Hi > Problems with autof

Re: [SSSD] [PATCH] AD enumeration improvements

2013-09-13 Thread Pavel Březina
On 09/04/2013 08:15 AM, Jakub Hrozek wrote: Hi, attached are patches that improve how we enumerate AD domains. The problem is that currently the domain info (subdomain and master domain) is downloaded when a responder queries the DP for domain info. But when enumeration is enabled, the responder

Re: [SSSD] setautomntenta autofs file not found

2013-09-13 Thread Rowland Penny
On 13/09/13 10:23, steve wrote: On Fri, 2013-09-13 at 10:38 +0200, steve wrote: On Fri, 2013-09-13 at 10:26 +0200, Jakub Hrozek wrote: On Fri, Sep 13, 2013 at 01:53:13AM +0200, steve wrote: Hi Problems with autofs on a 1.11.1 git: The only error I can see is this: 2013-09-13T01:47:34.264459+0

Re: [SSSD] setautomntenta autofs file not found

2013-09-13 Thread steve
On Fri, 2013-09-13 at 10:38 +0200, steve wrote: > On Fri, 2013-09-13 at 10:26 +0200, Jakub Hrozek wrote: > > On Fri, Sep 13, 2013 at 01:53:13AM +0200, steve wrote: > > > Hi > > > Problems with autofs on a 1.11.1 git: > > > > > > The only error I can see is this: > > > 2013-09-13T01:47:34.264459+0

Re: [SSSD] [PATCH] MAN: Remove IPA specific LDAP settings

2013-09-13 Thread Pavel Březina
On 09/12/2013 06:29 PM, Jakub Hrozek wrote: On Wed, Sep 11, 2013 at 07:51:06PM +0200, Jakub Hrozek wrote: On Wed, Sep 11, 2013 at 10:51:46AM +0200, Pavel Březina wrote: On 09/10/2013 04:34 PM, Jakub Hrozek wrote: On Tue, Sep 10, 2013 at 09:47:17AM +0200, Ondrej Kos wrote: Hi, Attached patch

Re: [SSSD] setautomntenta autofs file not found

2013-09-13 Thread steve
On Fri, 2013-09-13 at 10:26 +0200, Jakub Hrozek wrote: > On Fri, Sep 13, 2013 at 01:53:13AM +0200, steve wrote: > > Hi > > Problems with autofs on a 1.11.1 git: > > > > The only error I can see is this: > > 2013-09-13T01:47:34.264459+02:00 catral automount[2569]: setautomntent: > > lookup(sss): s

Re: [SSSD] [PATCH] Convert IN_MULTICAST parameter to host order

2013-09-13 Thread Jakub Hrozek
On Fri, Sep 13, 2013 at 09:48:33AM +0200, Lukas Slebodnik wrote: > On (13/09/13 09:29), Lukas Slebodnik wrote: > >On (12/09/13 18:47), Jakub Hrozek wrote: > >>The attached patch fixes > >>https://bugzilla.redhat.com/show_bug.cgi?id=1007475#c2 > > > >>From eaadcee0fc1335e7c37b2c04ae4fb39fe7a58b59 Mo

Re: [SSSD] setautomntenta autofs file not found

2013-09-13 Thread Jakub Hrozek
On Fri, Sep 13, 2013 at 01:53:13AM +0200, steve wrote: > Hi > Problems with autofs on a 1.11.1 git: > > The only error I can see is this: > 2013-09-13T01:47:34.264459+02:00 catral automount[2569]: setautomntent: > lookup(sss): setautomntent: No such file or directory > > and nothing gets mounted

Re: [SSSD] [PATCH] Convert IN_MULTICAST parameter to host order

2013-09-13 Thread Lukas Slebodnik
On (13/09/13 09:29), Lukas Slebodnik wrote: >On (12/09/13 18:47), Jakub Hrozek wrote: >>The attached patch fixes >>https://bugzilla.redhat.com/show_bug.cgi?id=1007475#c2 > >>From eaadcee0fc1335e7c37b2c04ae4fb39fe7a58b59 Mon Sep 17 00:00:00 2001 >>From: Jakub Hrozek >>Date: Thu, 12 Sep 2013 18:45:5

Re: [SSSD] [PATCH] Convert IN_MULTICAST parameter to host order

2013-09-13 Thread Lukas Slebodnik
On (12/09/13 18:47), Jakub Hrozek wrote: >The attached patch fixes >https://bugzilla.redhat.com/show_bug.cgi?id=1007475#c2 >From eaadcee0fc1335e7c37b2c04ae4fb39fe7a58b59 Mon Sep 17 00:00:00 2001 >From: Jakub Hrozek >Date: Thu, 12 Sep 2013 18:45:54 +0200 >Subject: [PATCH] Convert IN_MULTICAST para